Description
Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the following: Hijack a user session Execute arbitrary commands as a root user on the underlying operating system Conduct a cross-site scripting (XSS) attack Conduct an HTML injection attack For more information about these vulnerabilities, see the Details section of this advisory.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-7010 | Multiple vulnerabilities in the web-based management interface of Cisco Small Business 220 Series Smart Switches could allow an attacker to do the following: Hijack a user session Execute arbitrary commands as a root user on the underlying operating system Conduct a cross-site scripting (XSS) attack Conduct an HTML injection attack For more information about these vulnerabilities, see the Details section of this advisory. |
References
History
Thu, 07 Nov 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Subscriptions
Cisco
Subscribe
Sf220-24
Subscribe
Sf220-24 Firmware
Subscribe
Sf220-24p
Subscribe
Sf220-24p Firmware
Subscribe
Sf220-48
Subscribe
Sf220-48 Firmware
Subscribe
Sf220-48p
Subscribe
Sf220-48p Firmware
Subscribe
Sg220-26
Subscribe
Sg220-26 Firmware
Subscribe
Sg220-26p
Subscribe
Sg220-26p Firmware
Subscribe
Sg220-28mp
Subscribe
Sg220-28mp Firmware
Subscribe
Sg220-50
Subscribe
Sg220-50 Firmware
Subscribe
Sg220-50p
Subscribe
Sg220-50p Firmware
Subscribe
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2024-11-07T22:08:03.454Z
Reserved: 2020-11-13T00:00:00.000Z
Link: CVE-2021-1543
Updated: 2024-08-03T16:11:17.669Z
Status : Modified
Published: 2021-06-16T18:15:08.590
Modified: 2024-11-21T05:44:35.237
Link: CVE-2021-1543
No data.
OpenCVE Enrichment
No data.
EUVD