Severity
7.2HIGH
EPSS
1.1%
top 21.58%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 6
Latest updateMay 24

Description

Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could allow an authenticated, remote attacker to obtain sensitive information from or inject arbitrary commands on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9

Affected Packages7 packages

🔴Vulnerability Details

2
GHSA
GHSA-pw2v-g469-9h4v: Multiple vulnerabilities in the web-based management interface of certain Cisco Small Business 100, 300, and 500 Series Wireless Access Points could a2022-05-24
CVEList
Cisco Small Business 100, 300, and 500 Series Wireless Access Points Vulnerabilities2021-05-06

📋Vendor Advisories

1
Cisco
Cisco Small Business 100, 300, and 500 Series Wireless Access Points Vulnerabilities2021-05-05

🕵️Threat Intelligence

1
Talos
Vulnerability Spotlight: Vulnerabilities in Moxa MXView could allow attacker to view sensitive information, bypass login2022-02-11
CVE-2021-1401 (HIGH CVSS 7.2) | Multiple vulnerabilities in the web | cvebase.io