cbcvebase.
CVE-2021-1308
published 2021-04-08

CVE-2021-1308: Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business RV Series Routers. An unauthenticated…

high7.4CVSS 3.1
AVAACLPRNUINSCCNINAH
Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business RV Series Routers. An unauthenticated, adjacent attacker could execute arbitrary code or cause an affected router to leak system memory or reload. A memory leak or device reload would cause a denial of service (DoS) condition on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Note: LLDP is a Layer 2 protocol. To exploit these vulnerabilities, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).

Affected

36 ranges· showing 25
VendorProductVersion rangeFixed in
ciscocisco_small_business_rv_series_router_firmware
ciscorv132w_firmware
ciscorv132w_firmware
ciscorv132w_firmware
ciscorv134w_firmware
ciscorv134w_firmware
ciscorv134w_firmware
ciscorv160_firmware
ciscorv160_firmware
ciscorv160_firmware
ciscorv160w_firmware
ciscorv160w_firmware
ciscorv160w_firmware
ciscorv260_firmware
ciscorv260_firmware
ciscorv260_firmware
ciscorv260p_firmware
ciscorv260p_firmware
ciscorv260p_firmware
ciscorv260w_firmware
ciscorv260w_firmware
ciscorv260w_firmware
ciscorv340_firmware
ciscorv340_firmware
ciscorv340_firmware