← Back

CVE-2021-1305

nvd nist
Published: Jan 20, 2021Modified: Jun 17, 2026

JSON object

Loading...
4.3
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

Multiple vulnerabilities in the web-based management interface of Cisco SD-WAN vManage Software could allow an authenticated, remote attacker to bypass authorization and modify the configuration of an affected system, gain access to sensitive information, and view information that they are not authorized to access. For more information about these vulnerabilities, see the Details section of this advisory.

Affected (5)

4 products
Ios Xe Sd Wan
Sd Wan Firmware
Sd Wan Vsmart Controller Firmware
Sd Wan Vbond Orchestrator
Configuration A
4 vulnerable · 8 platform
Vulnerable SoftwareAffected Versions
All versions
Cisco
Before 20.3.2
Version 20.4.0
All versions
Running on/withPlatform Versions
Cisco
Vedge 1000 Router
All versions
Cisco
Vedge 100 Router
All versions
Cisco
Vedge 100b Router
All versions
Cisco
Vedge 100m Router
All versions
Cisco
Vedge 100wm Router
All versions
Cisco
Vedge 2000 Router
All versions
Cisco
Vedge 5000 Router
All versions
Cisco
Vedge Cloud Router
All versions
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions

Timeline

No history available yet.