Description
A vulnerability in the SSH management feature of multiple Cisco Access Points (APs) platforms could allow a local, authenticated user to modify files on the affected device and possibly gain escalated privileges. The vulnerability is due to improper checking on file operations within the SSH management interface. A network administrator user could exploit this vulnerability by accessing an affected device through SSH management to make a configuration change. A successful exploit could allow the attacker to gain privileges equivalent to the root user.
Published: 2021-09-23
Score: 7.8 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2021-6886 A vulnerability in the SSH management feature of multiple Cisco Access Points (APs) platforms could allow a local, authenticated user to modify files on the affected device and possibly gain escalated privileges. The vulnerability is due to improper checking on file operations within the SSH management interface. A network administrator user could exploit this vulnerability by accessing an affected device through SSH management to make a configuration change. A successful exploit could allow the attacker to gain privileges equivalent to the root user.
History

Thu, 07 Nov 2024 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Subscriptions

Cisco 1100-8p 1100-8p Firmware 1120 1120 Firmware 1160 Firmware 1160 Integrated Services Router Aironet 1542d Aironet 1542d Firmware Aironet 1542i Aironet 1542i Firmware Aironet 1562d Aironet 1562d Firmware Aironet 1562e Aironet 1562e Firmware Aironet 1562i Aironet 1562i Firmware Aironet 1815i Aironet 1815i Firmware Aironet 1815m Aironet 1815m Firmware Aironet 1815t Aironet 1815t Firmware Aironet 1815w Aironet 1815w Firmware Aironet 1830e Aironet 1830e Firmware Aironet 1830i Aironet 1830i Firmware Aironet 1840i Aironet 1840i Firmware Aironet 1850e Aironet 1850e Firmware Aironet 1850i Aironet 1850i Firmware Aironet 2800e Aironet 2800e Firmware Aironet 2800i Aironet 2800i Firmware Aironet 3800e Aironet 3800e Firmware Aironet 3800i Aironet 3800i Firmware Aironet 3800p Aironet 3800p Firmware Aironet 4800 Aironet 4800 Firmware Catalyst 9105axi Catalyst 9105axi Firmware Catalyst 9105axw Catalyst 9105axw Firmware Catalyst 9115axe Catalyst 9115axe Firmware Catalyst 9115axi Catalyst 9115axi Firmware Catalyst 9117 Firmware Catalyst 9117axi Catalyst 9120axe Catalyst 9120axe Firmware Catalyst 9120axi Catalyst 9120axi Firmware Catalyst 9120axp Catalyst 9120axp Firmware Catalyst 9124axd Catalyst 9124axd Firmware Catalyst 9124axi Catalyst 9124axi Firmware Catalyst 9130axe Catalyst 9130axe Firmware Catalyst 9130axi Catalyst 9130axi Firmware Catalyst 9800-40 Catalyst 9800-80 Catalyst 9800-cl Catalyst 9800-l Catalyst 9800 Firmware Catalyst Iw6300 Ac Catalyst Iw6300 Ac Firmware Catalyst Iw6300 Dc Catalyst Iw6300 Dc Firmware Catalyst Iw6300 Dcw Catalyst Iw6300 Dcw Firmware Esw6300 Esw6300 Firmware Wireless Lan Controller Software
cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-11-07T21:52:19.550Z

Reserved: 2020-11-13T00:00:00.000Z

Link: CVE-2021-1419

cve-icon Vulnrichment

Updated: 2024-08-03T16:11:17.241Z

cve-icon NVD

Status : Modified

Published: 2021-09-23T03:15:07.697

Modified: 2024-11-21T05:44:19.193

Link: CVE-2021-1419

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses