A vulnerability in the web-based management interface of multiple Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to replay valid user session credentials and gain unauthorized access to the web-based management interface of an affected device. This vulnerability is due to insufficient expiration of session credentials. An attacker could exploit this vulnerability by conducting a man-in-the-middle attack against an affected device to intercept valid session credentials and then replaying the intercepted credentials toward the same device at a later time. A successful exploit could allow the attacker to access the web-based management interface with administrator privileges.

Project Subscriptions

Vendors Products
Cbs250-16p-2g Subscribe
Cbs250-16p-2g Firmware Subscribe
Cbs250-16t-2g Subscribe
Cbs250-16t-2g Firmware Subscribe
Cbs250-24fp-4g Subscribe
Cbs250-24fp-4g Firmware Subscribe
Cbs250-24fp-4x Subscribe
Cbs250-24fp-4x Firmware Subscribe
Cbs250-24p-4g Subscribe
Cbs250-24p-4g Firmware Subscribe
Cbs250-24p-4x Subscribe
Cbs250-24p-4x Firmware Subscribe
Cbs250-24pp-4g Subscribe
Cbs250-24pp-4g Firmware Subscribe
Cbs250-24t-4g Subscribe
Cbs250-24t-4g Firmware Subscribe
Cbs250-24t-4x Subscribe
Cbs250-24t-4x Firmware Subscribe
Cbs250-48p-4g Subscribe
Cbs250-48p-4g Firmware Subscribe
Cbs250-48p-4x Subscribe
Cbs250-48p-4x Firmware Subscribe
Cbs250-48pp-4g Subscribe
Cbs250-48pp-4g Firmware Subscribe
Cbs250-48t-4g Subscribe
Cbs250-48t-4g Firmware Subscribe
Cbs250-48t-4x Subscribe
Cbs250-48t-4x Firmware Subscribe
Cbs250-8fp-e-2g Subscribe
Cbs250-8fp-e-2g Firmware Subscribe
Cbs250-8p-e-2g Subscribe
Cbs250-8p-e-2g Firmware Subscribe
Cbs250-8pp-d Subscribe
Cbs250-8pp-d Firmware Subscribe
Cbs250-8pp-e-2g Subscribe
Cbs250-8pp-e-2g Firmware Subscribe
Cbs250-8t-d Subscribe
Cbs250-8t-d Firmware Subscribe
Cbs250-8t-e-2g Subscribe
Cbs250-8t-e-2g Firmware Subscribe
Cbs350-12np-4x Subscribe
Cbs350-12np-4x Firmware Subscribe
Cbs350-12xs Subscribe
Cbs350-12xs Firmware Subscribe
Cbs350-12xt Subscribe
Cbs350-12xt Firmware Subscribe
Cbs350-16fp-2g Subscribe
Cbs350-16fp-2g Firmware Subscribe
Cbs350-16p-2g Subscribe
Cbs350-16p-2g Firmware Subscribe
Cbs350-16p-e-2g Subscribe
Cbs350-16p-e-2g Firmware Subscribe
Cbs350-16t-2g Subscribe
Cbs350-16t-2g Firmware Subscribe
Cbs350-16t-e-2g Subscribe
Cbs350-16t-e-2g Firmware Subscribe
Cbs350-16xts Subscribe
Cbs350-16xts Firmware Subscribe
Cbs350-24fp-4g Subscribe
Cbs350-24fp-4g Firmware Subscribe
Cbs350-24fp-4x Subscribe
Cbs350-24fp-4x Firmware Subscribe
Cbs350-24mgp-4x Subscribe
Cbs350-24mgp-4x Firmware Subscribe
Cbs350-24ngp-4x Subscribe
Cbs350-24ngp-4x Firmware Subscribe
Cbs350-24p-4g Subscribe
Cbs350-24p-4g Firmware Subscribe
Cbs350-24p-4x Subscribe
Cbs350-24p-4x Firmware Subscribe
Cbs350-24s-4g Subscribe
Cbs350-24s-4g Firmware Subscribe
Cbs350-24t-4g Subscribe
Cbs350-24t-4g Firmware Subscribe
Cbs350-24t-4x Subscribe
Cbs350-24t-4x Firmware Subscribe
Cbs350-24xs Subscribe
Cbs350-24xs Firmware Subscribe
Cbs350-24xt Subscribe
Cbs350-24xt Firmware Subscribe
Cbs350-24xts Subscribe
Cbs350-24xts Firmware Subscribe
Cbs350-48fp-4g Subscribe
Cbs350-48fp-4g Firmware Subscribe
Cbs350-48fp-4x Subscribe
Cbs350-48fp-4x Firmware Subscribe
Cbs350-48ngp-4x Subscribe
Cbs350-48ngp-4x Firmware Subscribe
Cbs350-48p-4g Subscribe
Cbs350-48p-4g Firmware Subscribe
Cbs350-48p-4x Subscribe
Cbs350-48p-4x Firmware Subscribe
Cbs350-48t-4g Subscribe
Cbs350-48t-4g Firmware Subscribe
Cbs350-48t-4x Subscribe
Cbs350-48t-4x Firmware Subscribe
Cbs350-48xt-4x Subscribe
Cbs350-48xt-4x Firmware Subscribe
Cbs350-8fp-2g Subscribe
Cbs350-8fp-2g Firmware Subscribe
Cbs350-8fp-e-2g Subscribe
Cbs350-8fp-e-2g Firmware Subscribe
Cbs350-8mgp-2x Subscribe
Cbs350-8mgp-2x Firmware Subscribe
Cbs350-8mp-2x Subscribe
Cbs350-8mp-2x Firmware Subscribe
Cbs350-8p-2g Subscribe
Cbs350-8p-2g Firmware Subscribe
Cbs350-8p-e-2g Subscribe
Cbs350-8p-e-2g Firmware Subscribe
Cbs350-8s-e-2g Subscribe
Cbs350-8s-e-2g Firmware Subscribe
Cbs350-8t-e-2g Subscribe
Cbs350-8t-e-2g Firmware Subscribe
Cbs350-8xt Subscribe
Cbs350-8xt Firmware Subscribe
Esw2-350g-52 Subscribe
Esw2-350g-52 Firmware Subscribe
Esw2-350g-52dc Subscribe
Esw2-350g-52dc Firmware Subscribe
Esw2-550x-48 Subscribe
Esw2-550x-48 Firmware Subscribe
Esw2-550x-48dc Subscribe
Esw2-550x-48dc Firmware Subscribe
Sf200-24 Subscribe
Sf200-24 Firmware Subscribe
Sf200-24fp Subscribe
Sf200-24fp Firmware Subscribe
Sf200-24p Subscribe
Sf200-24p Firmware Subscribe
Sf200-48 Subscribe
Sf200-48 Firmware Subscribe
Sf200-48p Subscribe
Sf200-48p Firmware Subscribe
Sf250-08 Subscribe
Sf250-08 Firmware Subscribe
Sf250-08hp Subscribe
Sf250-08hp Firmware Subscribe
Sf250-10p Subscribe
Sf250-10p Firmware Subscribe
Sf250-18 Subscribe
Sf250-18 Firmware Subscribe
Sf250-24 Subscribe
Sf250-24 Firmware Subscribe
Sf250-24p Subscribe
Sf250-24p Firmware Subscribe
Sf250-26 Subscribe
Sf250-26 Firmware Subscribe
Sf250-26hp Subscribe
Sf250-26hp Firmware Subscribe
Sf250-26p Subscribe
Sf250-26p Firmware Subscribe
Sf250-48 Subscribe
Sf250-48 Firmware Subscribe
Sf250-48hp Subscribe
Sf250-48hp Firmware Subscribe
Sf250-50 Subscribe
Sf250-50 Firmware Subscribe
Sf250-50hp Subscribe
Sf250-50hp Firmware Subscribe
Sf250-50p Subscribe
Sf250-50p Firmware Subscribe
Sf250x-24 Subscribe
Sf250x-24 Firmware Subscribe
Sf250x-24p Subscribe
Sf250x-24p Firmware Subscribe
Sf250x-48 Subscribe
Sf250x-48 Firmware Subscribe
Sf250x-48p Subscribe
Sf250x-48p Firmware Subscribe
Sf300-08 Subscribe
Sf300-08 Firmware Subscribe
Sf300-24 Subscribe
Sf300-24 Firmware Subscribe
Sf300-24mp Subscribe
Sf300-24mp Firmware Subscribe
Sf300-24p Subscribe
Sf300-24p Firmware Subscribe
Sf300-24pp Subscribe
Sf300-24pp Firmware Subscribe
Sf300-48 Subscribe
Sf300-48 Firmware Subscribe
Sf300-48p Subscribe
Sf300-48p Firmware Subscribe
Sf300-48pp Subscribe
Sf300-48pp Firmware Subscribe
Sf302-08 Subscribe
Sf302-08 Firmware Subscribe
Sf302-08mp Subscribe
Sf302-08mp Firmware Subscribe
Sf302-08mpp Subscribe
Sf302-08mpp Firmware Subscribe
Sf302-08p Subscribe
Sf302-08p Firmware Subscribe
Sf302-08pp Subscribe
Sf302-08pp Firmware Subscribe
Sf350-08 Subscribe
Sf350-08 Firmware Subscribe
Sf350-10 Subscribe
Sf350-10 Firmware Subscribe
Sf350-10mp Subscribe
Sf350-10mp Firmware Subscribe
Sf350-10p Subscribe
Sf350-10p Firmware Subscribe
Sf350-10sfp Subscribe
Sf350-10sfp Firmware Subscribe
Sf350-20 Subscribe
Sf350-20 Firmware Subscribe
Sf350-24 Subscribe
Sf350-24 Firmware Subscribe
Sf350-24mp Subscribe
Sf350-24mp Firmware Subscribe
Sf350-24p Subscribe
Sf350-24p Firmware Subscribe
Sf350-28 Subscribe
Sf350-28 Firmware Subscribe
Sf350-28mp Subscribe
Sf350-28mp Firmware Subscribe
Sf350-28p Subscribe
Sf350-28p Firmware Subscribe
Sf350-28sfp Subscribe
Sf350-28sfp Firmware Subscribe
Sf350-48 Subscribe
Sf350-48 Firmware Subscribe
Sf350-48p Subscribe
Sf350-48p Firmware Subscribe
Sf350-52 Subscribe
Sf350-52 Firmware Subscribe
Sf350-52mp Subscribe
Sf350-52mp Firmware Subscribe
Sf350-52p Subscribe
Sf350-52p Firmware Subscribe
Sf350-8mp Subscribe
Sf350-8mp Firmware Subscribe
Sf350-8pd Subscribe
Sf350-8pd Firmware Subscribe
Sf352-08 Subscribe
Sf352-08 Firmware Subscribe
Sf352-08mp Subscribe
Sf352-08mp Firmware Subscribe
Sf352-08p Subscribe
Sf352-08p Firmware Subscribe
Sf355-10p Subscribe
Sf355-10p Firmware Subscribe
Sf500-24 Subscribe
Sf500-24 Firmware Subscribe
Sf500-24mp Subscribe
Sf500-24mp Firmware Subscribe
Sf500-24p Subscribe
Sf500-24p Firmware Subscribe
Sf500-48 Subscribe
Sf500-48 Firmware Subscribe
Sf500-48mp Subscribe
Sf500-48mp Firmware Subscribe
Sf500-48p Subscribe
Sf500-48p Firmware Subscribe
Sf550x-24 Subscribe
Sf550x-24 Firmware Subscribe
Sf550x-24mp Subscribe
Sf550x-24mp Firmware Subscribe
Sf550x-24p Subscribe
Sf550x-24p Firmware Subscribe
Sf550x-48 Subscribe
Sf550x-48 Firmware Subscribe
Sf550x-48mp Subscribe
Sf550x-48mp Firmware Subscribe
Sf550x-48p Subscribe
Sf550x-48p Firmware Subscribe
Sg200-08 Subscribe
Sg200-08 Firmware Subscribe
Sg200-08p Subscribe
Sg200-08p Firmware Subscribe
Sg200-10fp Subscribe
Sg200-10fp Firmware Subscribe
Sg200-18 Subscribe
Sg200-18 Firmware Subscribe
Sg200-26 Subscribe
Sg200-26 Firmware Subscribe
Sg200-26fp Subscribe
Sg200-26fp Firmware Subscribe
Sg200-26p Subscribe
Sg200-26p Firmware Subscribe
Sg200-50 Subscribe
Sg200-50 Firmware Subscribe
Sg200-50fp Subscribe
Sg200-50fp Firmware Subscribe
Sg200-50p Subscribe
Sg200-50p Firmware Subscribe
Sg300-10 Subscribe
Sg300-10 Firmware Subscribe
Sg300-10mp Subscribe
Sg300-10mp Firmware Subscribe
Sg300-10mpp Subscribe
Sg300-10mpp Firmware Subscribe
Sg300-10p Subscribe
Sg300-10p Firmware Subscribe
Sg300-10pp Subscribe
Sg300-10pp Firmware Subscribe
Sg300-10sfp Subscribe
Sg300-10sfp Firmware Subscribe
Sg300-20 Subscribe
Sg300-20 Firmware Subscribe
Sg300-28 Subscribe
Sg300-28 Firmware Subscribe
Sg300-28mp Subscribe
Sg300-28mp Firmware Subscribe
Sg300-28p Subscribe
Sg300-28p Firmware Subscribe
Sg300-28pp Subscribe
Sg300-28pp Firmware Subscribe
Sg300-28sfp Subscribe
Sg300-28sfp Firmware Subscribe
Sg300-52 Subscribe
Sg300-52 Firmware Subscribe
Sg300-52mp Subscribe
Sg300-52mp Firmware Subscribe
Sg300-52p Subscribe
Sg300-52p Firmware Subscribe
Sg350x-12pmv Subscribe
Sg350x-12pmv Firmware Subscribe
Sg350x-24 Subscribe
Sg350x-24 Firmware Subscribe
Sg350x-24mp Subscribe
Sg350x-24mp Firmware Subscribe
Sg350x-24p Subscribe
Sg350x-24p Firmware Subscribe
Sg350x-24pd Subscribe
Sg350x-24pd Firmware Subscribe
Sg350x-24pv Subscribe
Sg350x-24pv Firmware Subscribe
Sg350x-48 Subscribe
Sg350x-48 Firmware Subscribe
Sg350x-48mp Subscribe
Sg350x-48mp Firmware Subscribe
Sg350x-48p Subscribe
Sg350x-48p Firmware Subscribe
Sg350x-48pv Subscribe
Sg350x-48pv Firmware Subscribe
Sg350x-8pmd Subscribe
Sg350x-8pmd Firmware Subscribe
Sg350xg-24f Subscribe
Sg350xg-24f Firmware Subscribe
Sg350xg-24t Subscribe
Sg350xg-24t Firmware Subscribe
Sg350xg-2f10 Subscribe
Sg350xg-2f10 Firmware Subscribe
Sg350xg-48t Subscribe
Sg350xg-48t Firmware Subscribe
Sg500-28 Subscribe
Sg500-28 Firmware Subscribe
Sg500-28mpp Subscribe
Sg500-28mpp Firmware Subscribe
Sg500-28p Subscribe
Sg500-28p Firmware Subscribe
Sg500-52 Subscribe
Sg500-52 Firmware Subscribe
Sg500-52mp Subscribe
Sg500-52mp Firmware Subscribe
Sg500-52p Subscribe
Sg500-52p Firmware Subscribe
Sg500x-24 Subscribe
Sg500x-24 Firmware Subscribe
Sg500x-24mpp Subscribe
Sg500x-24mpp Firmware Subscribe
Sg500x-24p Subscribe
Sg500x-24p Firmware Subscribe
Sg500x-48 Subscribe
Sg500x-48 Firmware Subscribe
Sg500x-48mp Subscribe
Sg500x-48mp Firmware Subscribe
Sg500x-48p Subscribe
Sg500x-48p Firmware Subscribe
Sg500xg-8f8t Subscribe
Sg500xg-8f8t Firmware Subscribe
Sg550x-24 Subscribe
Sg550x-24 Firmware Subscribe
Sg550x-24mp Subscribe
Sg550x-24mp Firmware Subscribe
Sg550x-24mpp Subscribe
Sg550x-24mpp Firmware Subscribe
Sg550x-24p Subscribe
Sg550x-24p Firmware Subscribe
Sg550x-48 Subscribe
Sg550x-48 Firmware Subscribe
Sg550x-48mp Subscribe
Sg550x-48mp Firmware Subscribe
Sg550x-48p Subscribe
Sg550x-48p Firmware Subscribe
Sg550xg-24f Subscribe
Sg550xg-24f Firmware Subscribe
Sg550xg-24t Subscribe
Sg550xg-24t Firmware Subscribe
Sg550xg-48t Subscribe
Sg550xg-48t Firmware Subscribe
Sg550xg-8f8t Subscribe
Sg550xg-8f8t Firmware Subscribe
Sx350x-08 Subscribe
Sx350x-08 Firmware Subscribe
Sx350x-12 Subscribe
Sx350x-12 Firmware Subscribe
Sx350x-24 Subscribe
Sx350x-24 Firmware Subscribe
Sx350x-24f Subscribe
Sx350x-24f Firmware Subscribe
Sx350x-52 Subscribe
Sx350x-52 Firmware Subscribe
Sx550x-12f Subscribe
Sx550x-12f Firmware Subscribe
Sx550x-16ft Subscribe
Sx550x-16ft Firmware Subscribe
Sx550x-24 Subscribe
Sx550x-24 Firmware Subscribe
Sx550x-24f Subscribe
Sx550x-24f Firmware Subscribe
Sx550x-24ft Subscribe
Sx550x-24ft Firmware Subscribe
Sx550x-52 Subscribe
Sx550x-52 Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2021-21389 A vulnerability in the web-based management interface of multiple Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to replay valid user session credentials and gain unauthorized access to the web-based management interface of an affected device. This vulnerability is due to insufficient expiration of session credentials. An attacker could exploit this vulnerability by conducting a man-in-the-middle attack against an affected device to intercept valid session credentials and then replaying the intercepted credentials toward the same device at a later time. A successful exploit could allow the attacker to access the web-based management interface with administrator privileges.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Sat, 12 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00506}

epss

{'score': 0.00249}


Thu, 07 Nov 2024 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-11-07T21:43:18.199Z

Reserved: 2021-06-15T00:00:00

Link: CVE-2021-34739

cve-icon Vulnrichment

Updated: 2024-08-04T00:19:48.160Z

cve-icon NVD

Status : Modified

Published: 2021-11-04T16:15:08.577

Modified: 2024-11-21T06:11:05.400

Link: CVE-2021-34739

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses