Cisco Security Advisories · June 2021 — Cisco Security Advisories
22 advisories 28 CVEs

PSIRT bulletins (cisco-sa-*) and cross-source CVEs naming Cisco for 2021-06. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity).

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

cisco-sa-webex-player-dOJ2jOJ

Cisco PSIRTCoalition ESS < 30%CRITICAL2021-06-02

Cisco Webex Network Recording Player and Webex Player Memory Corruption Vulnerability

CVEs:CVE-2021-1502

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-228295 affected Cisco — —
CVRFPID-278014 affected Cisco — —
Upstream advisory

cisco-sa-webex-player-kOf8zVT

Cisco PSIRTCoalition ESS < 30%CRITICAL2021-06-02

Cisco Webex Player Memory Corruption Vulnerability

CVEs:CVE-2021-1526

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-228295 affected Cisco — —
CVRFPID-278014 affected Cisco — —
Upstream advisory

cisco-sa-webex-player-rCFDeVj2

Cisco PSIRTCoalition ESS < 30%CRITICAL2021-06-02

Cisco Webex Network Recording Player and Webex Player Memory Corruption Vulnerability

CVEs:CVE-2021-1503

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-228295 affected Cisco — —
CVRFPID-278014 affected Cisco — —
Upstream advisory

cisco-sa-webex-multimedia-26DpqVRO

Cisco PSIRTCoalition ESS < 30%HIGH2021-06-02

Cisco Webex Meetings and Webex Meetings Server Multimedia Sharing Security Bypass Vulnerability

CVEs:CVE-2021-1517

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-190702 affected Cisco — —
CVRFPID-279336 affected Cisco — —
Upstream advisory

cisco-sa-cuic-xss-csHUdtrL

Cisco PSIRTCoalition ESS < 30%HIGH2021-06-16

Cisco Unified Intelligence Center Reflected Cross-Site Scripting Vulnerability

CVEs:CVE-2021-1395

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-198393 affected Cisco — —
CVRFPID-92631 affected Cisco — —
Upstream advisory

cisco-sa-webex-redirect-XuZFU3PH

Cisco PSIRTCoalition ESS < 30%HIGH2021-06-02

Cisco Webex Meetings and Webex Meetings Server File Redirect Vulnerability

CVEs:CVE-2021-1525

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-190702 affected Cisco — —
CVRFPID-228295 affected Cisco — —
Upstream advisory

cisco-sa-esa-wsa-cert-vali-n8L97RW

Cisco PSIRTCoalition ESS < 30%HIGH2021-06-16

Cisco Email Security Appliance and Cisco Web Security Appliance Certificate Validation Vulnerability

CVEs:CVE-2021-1566

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-189789 affected Cisco — —
CVRFPID-189790 affected Cisco — —
Upstream advisory

cisco-sa-webex-dll-inject-XNmcSGTU

Cisco PSIRTCoalition ESS < 30%HIGH2021-06-02

Cisco Webex Meetings, Webex Network Recording Player, and Webex Teams DLL Injection Vulnerability

CVEs:CVE-2021-1536

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-210403 affected Cisco — —
CVRFPID-278014 affected Cisco — —
CVRFPID-279336 affected Cisco — —
Upstream advisory

cisco-sa-sd-wan-fuErCWwF

Cisco PSIRTCoalition ESS < 30%HIGH2021-06-02

Cisco SD-WAN Software Privilege Escalation Vulnerability

CVEs:CVE-2021-1528

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-238692 affected Cisco — —
CVRFPID-271450 affected Cisco — —
CVRFPID-278041 affected Cisco — —
CVRFPID-278078 affected Cisco — —
CVRFPID-278124 affected Cisco — —
Upstream advisory

cisco-sa-webex-8fpBnKOz

Cisco PSIRTCoalition ESS < 30%HIGH2021-06-02

Cisco Webex Meetings Client Software Logging Information Disclosure Vulnerability

CVEs:CVE-2021-1544

Affected products

ProductStatusVendorPackageEcosystem
CVRFPID-228295 affected Cisco — —
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.