CVE-2021-1466

CVSS 3.1 Score 5.4 of 10 (medium)

Details

Published Nov 15, 2024
CWE ID 20

Summary

CVE-2021-1466 is a vulnerability affecting the vDaemon service of Cisco SD-WAN vManage Software. This issue allows authenticated, local attackers to cause a buffer overflow, resulting in a denial of service (DoS) condition. The source of the problem lies in incomplete bounds checks for data provided to the vDaemon service. An attacker can exploit this vulnerability by sending malicious data to the vDaemon listening service on an affected system. Successful exploitation can lead to a buffer overflow condition, causing the vDaemon service to reload and result in a DoS situation. Cisco has released software updates to address this vulnerability, and no workarounds are available.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Affected Products

  • Cisco Catalyst SD-WAN Manager

Affected Vendors

  • Cisco Systems Inc