Lucene search

K
ciscoCiscoCISCO-SA-VMANAGE-YUTVWQY
HistoryApr 07, 2021 - 4:00 p.m.

Cisco SD-WAN vManage Software Vulnerabilities

2021-04-0716:00:00
tools.cisco.com
54
cisco
sd-wan
vmanage
software
vulnerabilities
remote code execution
escalated privileges
workarounds

EPSS

0.003

Percentile

71.5%

Multiple vulnerabilities in Cisco SD-WAN vManage Software could allow an unauthenticated, remote attacker to execute arbitrary code or allow an authenticated, local attacker to gain escalated privileges on an affected system.

For more information about these vulnerabilities, see the Details [β€œ#details”] section of this advisory.

Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.

This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vmanage-YuTVWqy [β€œhttps://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-vmanage-YuTVWqy”]

Affected configurations

Vulners
Node
ciscocatalyst_sd-wan_managerMatchany
OR
ciscocatalyst_sd-wan_managerMatchany
OR
ciscosd-wan_vedge_routerMatchany
OR
ciscosd-wan_vedge_cloudMatchany
OR
ciscosd-wanMatchany
OR
ciscocatalyst_sd-wan_managerMatchany
OR
ciscocatalyst_sd-wan_managerMatchany
OR
ciscosd-wan_vedge_routerMatchany
OR
ciscosd-wan_vedge_cloudMatchany
OR
ciscosd-wanMatchany
VendorProductVersionCPE
ciscocatalyst_sd-wan_manageranycpe:2.3:a:cisco:catalyst_sd-wan_manager:any:*:*:*:*:*:*:*
ciscosd-wan_vedge_routeranycpe:2.3:a:cisco:sd-wan_vedge_router:any:*:*:*:*:*:*:*
ciscosd-wan_vedge_cloudanycpe:2.3:a:cisco:sd-wan_vedge_cloud:any:*:*:*:*:*:*:*
ciscosd-wananycpe:2.3:a:cisco:sd-wan:any:*:*:*:*:*:*:*

EPSS

0.003

Percentile

71.5%