CVE-2021-1233
published 2021-01-20CVE-2021-1233: A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information on an affected device. The…
PriorityP420medium4.4CVSS 3.1
AVLACLPRHUINSUCHINAN
EPSS
0.32%
24.3th percentile
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information on an affected device. The vulnerability is due to insufficient input validation of requests that are sent to the iperf tool. An attacker could exploit this vulnerability by sending a crafted request to the iperf tool, which is included in Cisco SD-WAN Software. A successful exploit could allow the attacker to obtain any file from the filesystem of an affected device.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_sd-wan_solution | — | — |
| cisco | sd-wan | — | — |
| cisco | sd-wan_firmware | < 18.4.3 | 18.4.3 |
CVSS provenance
nvdv3.14.4MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
nvdv3.04.4MEDIUMCVSS:3.0/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
nvdv2.04.9MEDIUMAV:L/AC:L/Au:N/C:C/I:N/A:N
vendor_cisco4.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco SD-WAN Information Disclosure Vulnerability
vendor_cisco·2021-01-20·CVSS 4.4
CVE-2021-1233 [MEDIUM] CWE-20 Cisco SD-WAN Information Disclosure Vulnerability
Cisco SD-WAN Information Disclosure Vulnerability
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information on an affected device.
The vulnerability is due to insufficient input validation of requests that are sent to the iperf tool. An attacker could exploit this vulnerability by sending a crafted request to the iperf tool, which is included in Cisco SD-WAN Software. A successful exploit could allow the attacker to obtain any file from the filesystem of an affected device.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdv
Cisco
Cisco SD-WAN Information Disclosure Vulnerability
vendor_cisco·CVSS 3.0
CVE-2021-1233 Cisco SD-WAN Information Disclosure Vulnerability
CVE-2021-1233: Cisco SD-WAN Information Disclosure Vulnerability
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information on an affected device. The vulnerability is due to insufficient input validation of requests that are sent to the iperf tool. An attacker could exploit this vulnerability by sending a crafted request to the iperf tool, which is included in Cisco SD-WAN Software. A successful exploit could allow the attacker to obtain any file from the filesystem of an affected device. Cisco has released software updates that address this vulnerability. There are no
CVSS: 3.0
CWE: CWE-20, CWE-20
Bug IDs: CSCvi69962
GHSA
GHSA-7p72-85j2-h9fw: A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information on an affected device
ghsa_unreviewed·2022-05-24
CVE-2021-1233 [MEDIUM] CWE-20 GHSA-7p72-85j2-h9fw: A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information on an affected device
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information on an affected device.
The vulnerability is due to insufficient input validation of requests that are sent to the iperf tool. An attacker could exploit this vulnerability by sending a crafted request to the iperf tool, which is included in Cisco SD-WAN Software. A successful exploit could allow the attacker to obtain any file from the filesystem of an affected device.
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Code execution vulnerability in Adobe Acrobat Reader
blogs_talos·2021-05-11·CVSS 8.8
CVE-2021-28562 [HIGH] Vulnerability Spotlight: Code execution vulnerability in Adobe Acrobat Reader
## Vulnerability Spotlight: Code execution vulnerability in Adobe Acrobat Reader
Aleksandar Nikolic of Cisco Talos discovered this vulnerability. Blog by Jon Munshaw.
Cisco Talos recently discovered an arbitrary code execution vulnerability in Adobe Acrobat Reader.
Adobe Acrobat Reader is one of the most popular and feature-rich PDF readers on the market. The software supports JavaScript so it can process interactive forms.
TALOS-2021-1233 (CVE-2021-28562) specifically exploits queries through JavaScript in a way that could allow an attacker to execute code on the targeted machine. An attacker needs to trick a user into opening a specially crafted, malicious PDF to exploit this vulnerability.
Cisco Talos worked with Adobe to ensure that that this issue is resolved and an update is ava
Talos
Vulnerability Spotlight: Code execution vulnerability in Adobe Acrobat Reader
blogs_talos·2021-05-11·CVSS 8.8
CVE-2021-28562 [HIGH] Vulnerability Spotlight: Code execution vulnerability in Adobe Acrobat Reader
Aleksandar Nikolic of Cisco Talos discovered this vulnerability. Blog by Jon Munshaw.
Cisco Talos recently discovered an arbitrary code execution vulnerability in Adobe Acrobat Reader.
Adobe Acrobat Reader is one of the most popular and feature-rich PDF readers on the market. The software supports JavaScript so it can process interactive forms.
TALOS-2021-1233 (CVE-2021-28562) specifically exploits queries through JavaScript in a way that could allow an attacker to execute code on the targeted machine. An attacker needs to trick a user into opening a specially crafted, malicious PDF to exploit this vulnerability.
Cisco Talos worked with Adobe to ensure that that this issue is resolved and an update is available for affected customers, all in adherence to Cisco’s vulnerability disclosur
2021-01-20
Published