CVE-2021-1270: Cisco Data Center Network Manager Authorization Bypass Vulnerabilities
Multiple vulnerabilities in the web-based management interface of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to view, modify, and delete data without proper authorization. For more information about these vulnerabilities, see the Details section of this advisory.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-1270?
CVE-2021-1270 is a vulnerability in the web-based management interface of Cisco Data Center Network Manager (DCNM) that allows an authenticated, remote attacker to view, modify, and delete data without proper authorization.
How can an attacker exploit CVE-2021-1270?
An authenticated, remote attacker can exploit CVE-2021-1270 by accessing the web-based management interface of Cisco DCNM and performing unauthorized actions on the system.
What is the severity of CVE-2021-1270?
CVE-2021-1270 has a severity rating of 6.5, which is categorized as medium severity.
Which version of Cisco Data Center Network Manager is affected by CVE-2021-1270?
Cisco Data Center Network Manager version 11.5(1) is affected by CVE-2021-1270.
How can I fix CVE-2021-1270?
To fix CVE-2021-1270, it is recommended to upgrade to a fixed version of Cisco Data Center Network Manager as mentioned in the Cisco Security Advisory.