CVE-2021-1265
published 2021-01-20CVE-2021-1265: A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtain the…
PriorityP340medium6.5CVSS 3.1
AVNACLPRLUINSUCHINAN
EPSS
0.92%
56.2th percentile
A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtain the full unmasked running configuration of managed devices. The vulnerability is due to the configuration archives files being stored in clear text, which can be retrieved by various API calls. An attacker could exploit this vulnerability by authenticating to the device and executing a series of API calls. A successful exploit could allow the attacker to retrieve the full unmasked running configurations of managed devices.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | catalyst_center | < 2.1.1.0 | 2.1.1.0 |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | dna_center | — | — |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
nvdv3.07.7HIGHCVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:P/I:N/A:N
vendor_cisco7.7HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco DNA Center Information Disclosure Vulnerability
vendor_cisco·2021-01-20·CVSS 7.7
CVE-2021-1265 [HIGH] CWE-312 Cisco DNA Center Information Disclosure Vulnerability
Cisco DNA Center Information Disclosure Vulnerability
A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtain the full unmasked running configuration of managed devices.
The vulnerability is due to the configuration archives files being stored in clear text, which can be retrieved by various API calls. An attacker could exploit this vulnerability by authenticating to the device and executing a series of API calls. A successful exploit could allow the attacker to retrieve the full unmasked running configurations of managed devices.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the foll
Cisco
Cisco DNA Center Information Disclosure Vulnerability
vendor_cisco·CVSS 3.0
CVE-2021-1265 Cisco DNA Center Information Disclosure Vulnerability
CVE-2021-1265: Cisco DNA Center Information Disclosure Vulnerability
A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtain the full unmasked running configuration of managed devices. The vulnerability is due to the configuration archives files being stored in clear text, which can be retrieved by various API calls. An attacker could exploit this vulnerability by authenticating to the device and executing a series of API calls. A successful exploit could allow the attacker to retrieve the full unmasked running configurations of managed devices. Cisco has released software updates that address this vulnerability. There are no
CVSS: 3.0
CWE: CWE-312, CWE-312
Bug IDs: CSCvr85371
GHSA
GHSA-32x3-2qh2-v3w9: A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtai
ghsa_unreviewed·2022-05-24
CVE-2021-1265 [MEDIUM] CWE-312 GHSA-32x3-2qh2-v3w9: A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtai
A vulnerability in the configuration archive functionality of Cisco DNA Center could allow any privilege-level authenticated, remote attacker to obtain the full unmasked running configuration of managed devices. The vulnerability is due to the configuration archives files being stored in clear text, which can be retrieved by various API calls. An attacker could exploit this vulnerability by authenticating to the device and executing a series of API calls. A successful exploit could allow the attacker to retrieve the full unmasked running configurations of managed devices.
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Code execution vulnerabilities in Nitro Pro PDF
blogs_talos·2021-10-14·CVSS 7.8
CVE-2021-21796 [HIGH] Vulnerability Spotlight: Code execution vulnerabilities in Nitro Pro PDF
A Cisco Talos team member discovered these vulnerabilities.
Cisco Talos recently discovered multiple vulnerabilities in the Nitro Pro PDF reader that could allow an attacker to execute code in the context of the application.
Nitro Pro PDF is part of Nitro Software’s Productivity Suite. Pro PDF allows users to create and modify PDFs and other digital documents. It includes support for several capabilities via third-party libraries to parse the PDFs. TALOS-2021-1265 (CVE-2021-21796) is a use-after-free vulnerability that can be triggered if a target opens a specially crafted, malicious PDF.
TALOS-2021-1266 (CVE-2021-21797) is a double-free vulnerability that can cause a reference to a timeout object to be stored in two different places, eventually leading to the ability to execute code un
Talos
Vulnerability Spotlight: Code execution vulnerabilities in Nitro Pro PDF
blogs_talos·2021-10-14·CVSS 7.8
[HIGH] Vulnerability Spotlight: Code execution vulnerabilities in Nitro Pro PDF
## Vulnerability Spotlight: Code execution vulnerabilities in Nitro Pro PDF
A Cisco Talos team member discovered these vulnerabilities.
Cisco Talos recently discovered multiple vulnerabilities in the Nitro Pro PDF reader that could allow an attacker to execute code in the context of the application.
Nitro Pro PDF is part of Nitro Software’s Productivity Suite. Pro PDF allows users to create and modify PDFs and other digital documents. It includes support for several capabilities via third-party libraries to parse the PDFs. TALOS-2021-1265 (CVE-2021-21796) is a use-after-free vulnerability that can be triggered if a target opens a specially crafted, malicious PDF.
TALOS-2021-1266 (CVE-2021-21797) is a double-free vulnerability that can cause a reference to a timeout object to be stored
2021-01-20
Published