First published: Wed Jan 20 2021(Updated: )
Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute attacks against an affected device. For more information about these vulnerabilities, see the Details section of this advisory.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco IOS XE sd-wan 16.12.1a | ||
Cisco SD-WAN | =18.3.8 | |
Cisco SD-WAN | =18.4.4 | |
Cisco SD-WAN | =19.2.1 | |
Cisco SD-WAN | =19.2.99 | |
Cisco vSmart Controller Firmware | ||
Cisco vEdge Router | ||
Cisco vEdge Router | ||
Cisco vEdge 100b | ||
Cisco vEdge 100m router | ||
Cisco vEdge 100wm | ||
Cisco vEdge 2000 | ||
Cisco vEdge 5000 | ||
Cisco vEdge Cloud | ||
Cisco Catalyst SD-WAN Manager | ||
Cisco vBond Orchestrator |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-1301 refers to multiple vulnerabilities in Cisco SD-WAN products.
CVE-2021-1301 has a severity rating of 9.8 (Critical).
Cisco Ios Xe Sd-wan, Cisco Sd-wan Firmware (versions 18.3.8, 18.4.4, 19.2.1, 19.2.99), and Cisco Sd-wan Vsmart Controller Firmware are affected.
An unauthenticated remote attacker can execute attacks against an affected device.
You can find more information about CVE-2021-1301 in the Cisco Security Advisory.