← Back

CVE-2021-1497

Published: May 6, 2021Modified: Jun 17, 2026CISA KEV

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

Multiple vulnerabilities in the web-based management interface of Cisco HyperFlex HX could allow an unauthenticated, remote attacker to perform command injection attacks against an affected device. For more information about these vulnerabilities, see the Details section of this advisory.

Affected (2)

1 product
Hyperflex Hx Data Platform
Configuration A
2 vulnerable · 7 platform
Vulnerable SoftwareAffected Versions
Cisco
Before 4.0\(2e\)
From 4.5 to 4.5\(2a\)
Running on/withPlatform Versions
Cisco
Hyperflex Hx220c Af M5
All versions
Cisco
Hyperflex Hx220c All Nvme M5
All versions
Cisco
Hyperflex Hx220c Edge M5
All versions
Cisco
Hyperflex Hx220c M5
All versions
Cisco
Hyperflex Hx240c
All versions
Cisco
Hyperflex Hx240c Af M5
All versions
Cisco
Hyperflex Hx240c M5
All versions

Timeline

No history available yet.