CVE-2021-1466
CVSS 3.1 Score 5.4 of 10 (medium)
Details
Summary
CVE-2021-1466 is a vulnerability affecting the vDaemon service of Cisco SD-WAN vManage Software. This issue allows authenticated, local attackers to cause a buffer overflow, resulting in a denial of service (DoS) condition. The source of the problem lies in incomplete bounds checks for data provided to the vDaemon service. An attacker can exploit this vulnerability by sending malicious data to the vDaemon listening service on an affected system. Successful exploitation can lead to a buffer overflow condition, causing the vDaemon service to reload and result in a DoS situation. Cisco has released software updates to address this vulnerability, and no workarounds are available.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Cisco Catalyst SD-WAN Manager
Affected Vendors
- Cisco Systems Inc