Description
Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business RV Series Routers. An unauthenticated, adjacent attacker could execute arbitrary code or cause an affected router to leak system memory or reload. A memory leak or device reload would cause a denial of service (DoS) condition on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Note: LLDP is a Layer 2 protocol. To exploit these vulnerabilities, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).
Published: 2021-04-08
Score: 7.4 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-6775 Multiple vulnerabilities exist in the Link Layer Discovery Protocol (LLDP) implementation for Cisco Small Business RV Series Routers. An unauthenticated, adjacent attacker could execute arbitrary code or cause an affected router to leak system memory or reload. A memory leak or device reload would cause a denial of service (DoS) condition on an affected device. For more information about these vulnerabilities, see the Details section of this advisory. Note: LLDP is a Layer 2 protocol. To exploit these vulnerabilities, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).
History

Sat, 09 Nov 2024 00:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Cisco Rv132w Rv132w Firmware Rv134w Rv134w Firmware Rv160 Rv160 Firmware Rv160w Rv160w Firmware Rv260 Rv260 Firmware Rv260p Rv260p Firmware Rv260w Rv260w Firmware Rv340 Rv340 Firmware Rv340w Rv340w Firmware Rv345 Rv345 Firmware Rv345p Rv345p Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-11-08T23:29:49.703Z

Reserved: 2020-11-13T00:00:00.000Z

Link: CVE-2021-1308

cve-icon Vulnrichment

Updated: 2024-08-03T16:02:56.452Z

cve-icon NVD

Status : Modified

Published: 2021-04-08T04:15:11.983

Modified: 2024-11-21T05:44:03.550

Link: CVE-2021-1308

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses