Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2021-1261— Cisco SD-WAN Command Injection Vulnerabilities

EPSS 1.28% · P80
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2021-1261

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
Cisco SD-WAN Command Injection Vulnerabilities
Source: NVD (National Vulnerability Database)
Vulnerability Description
Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected device, which could allow the attacker to take certain actions with root privileges on the device. For more information about these vulnerabilities, see the Details section of this advisory.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
输入验证不恰当
Source: NVD (National Vulnerability Database)
Vulnerability Title
多款 Cisco SD-WAN 产品注入漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Cisco SD-WAN vEdge Routers等都是美国思科(Cisco)公司的产品。Cisco SD-WAN vEdge Routers是一款路由器。Cisco SD-WAN Vbond Orchestrator Software是一款用于 Cisco vSmart Controllers 和 vEdge routers设备之间进行身份验证的软件。Cisco SD-WAN vEdge Cloud Routers是一款可为云环境中提供虚拟路由功能的服务。 多款 Cisco SD-WAN 产品存在注入
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
CiscoCisco SD-WAN Solution n/a -

II. Public POCs for CVE-2021-1261

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2021-1261

登录查看更多情报信息。

Same Patch Batch · Cisco · 2021-01-20 · 58 CVEs total

CVE-2021-11389.8 CRITICALCisco Smart Software Manager Satellite Web UI Command Injection Vulnerabilities
CVE-2021-11399.8 CRITICALCisco Smart Software Manager Satellite Web UI Command Injection Vulnerabilities
CVE-2021-11409.8 CRITICALCisco Smart Software Manager Satellite Web UI Command Injection Vulnerabilities
CVE-2021-11419.8 CRITICALCisco Smart Software Manager Satellite Web UI Command Injection Vulnerabilities
CVE-2021-11429.8 CRITICALCisco Smart Software Manager Satellite Web UI Command Injection Vulnerabilities
CVE-2021-12649.6 CRITICALCisco DNA Center Command Runner Command Injection Vulnerability
CVE-2021-12728.8 HIGHCisco Data Center Network Manager Server-Side Request Forgery Vulnerability
CVE-2021-13058.8 HIGHCisco SD-WAN vManage Authorization Bypass Vulnerabilities
CVE-2021-12478.8 HIGHCisco Data Center Network Manager SQL Injection Vulnerabilities
CVE-2021-12488.8 HIGHCisco Data Center Network Manager SQL Injection Vulnerabilities
CVE-2021-13028.8 HIGHCisco SD-WAN vManage Authorization Bypass Vulnerabilities
CVE-2021-13048.8 HIGHCisco SD-WAN vManage Authorization Bypass Vulnerabilities
CVE-2021-12748.6 HIGHCisco SD-WAN Denial of Service Vulnerabilities
CVE-2021-12798.6 HIGHCisco SD-WAN Denial of Service Vulnerabilities
CVE-2021-12788.6 HIGHCisco SD-WAN Denial of Service Vulnerabilities
CVE-2021-12418.6 HIGHCisco SD-WAN Denial of Service Vulnerabilities
CVE-2021-12738.6 HIGHCisco SD-WAN Denial of Service Vulnerabilities
CVE-2021-12807.8 HIGHCisco Advanced Malware Protection for Endpoints and Immunet for Windows DLL Hijacking Vuln
CVE-2021-12767.5 HIGHCisco Data Center Network Manager Certificate Validation Vulnerabilities
CVE-2021-12777.5 HIGHCisco Data Center Network Manager Certificate Validation Vulnerabilities

Showing top 20 of 58 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2021-1261

No comments yet


Leave a comment