Lucene search

K
ciscoCiscoCISCO-SA-CISCOSB-MULTIVULNS-WWYB7S5E
HistoryJun 16, 2021 - 4:00 p.m.

Cisco Small Business 220 Series Smart Switches Vulnerabilities

2021-06-1616:00:00
tools.cisco.com
53

0.002 Low

EPSS

Percentile

54.0%

Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the following:

Hijack a user session
Execute arbitrary commands as a root user on the underlying operating system
Conduct a cross-site scripting (XSS) attack
Conduct an HTML injection attack

For more information about these vulnerabilities, see the Details [“#details”] section of this advisory.

Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ciscosb-multivulns-Wwyb7s5E [“https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ciscosb-multivulns-Wwyb7s5E”]

Affected configurations

Vulners
Node
ciscosmall_business_220_series_smart_plus_switchesMatchany
OR
ciscosmall_business_220_series_smart_plus_switchesMatchany
OR
ciscosmall_business_srp541wMatch220_series_smart_plus_switches
OR
ciscosmall_business_220_series_smart_plus_switchesMatchany

0.002 Low

EPSS

Percentile

54.0%

Related for CISCO-SA-CISCOSB-MULTIVULNS-WWYB7S5E