CVE-2021-1419: Cisco Access Points SSH Management Privilege Escalation Vulnerability
A vulnerability in the SSH management feature of multiple Cisco Access Points (APs) platforms could allow a local, authenticated user to modify files on the affected device and possibly gain escalated privileges. The vulnerability is due to improper checking on file operations within the SSH management interface. A network administrator user could exploit this vulnerability by accessing an affected device through SSH management to make a configuration change. A successful exploit could allow the attacker to gain privileges equivalent to the root user.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2021-1419?
CVE-2021-1419 is classified as a high severity vulnerability.
How do I fix CVE-2021-1419?
To mitigate CVE-2021-1419, it is recommended to update affected Cisco Access Points to the latest firmware version.
What devices are affected by CVE-2021-1419?
The affected devices include various Cisco Access Points like Aironet 1542D, 1562, 1815M, and others.
What is the impact of CVE-2021-1419?
CVE-2021-1419 allows a local, authenticated user to modify files on the device and potentially escalate their privileges.
Is CVE-2021-1419 exploitable remotely?
No, CVE-2021-1419 is a local vulnerability and requires authentication to exploit.