VDB

CVE-2021-1262

CVE-2021-1262 PUBLISHED CVSS 8.100000381469727 HIGH

Multiple vulnerabilities in Cisco SD-WAN products could allow an authenticated attacker to perform command injection attacks against an affected device, which could allow the attacker to take certain actions with root privileges on the device. For more information about these vulnerabilities, see the Details section of this advisory.

EPSS 0.57% · 69.2th percentile

Risk Scores

CVSS 3.0
8.100000381469727
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
EPSS Score
0.57%
69.2th percentile

Affected Products

VendorProductVersions
ciscocatalyst_sd-wan_manager
ciscosd-wan_firmware0, 19.3.0, 20.4
ciscosd-wan_vsmart_controller_firmware
CiscoCisco SD-WAN Solutionn/a
ciscosd-wan_vbond_orchestrator

Timeline

  • Jan 20, 2021 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 1, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 4, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Jan 8, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›