imPC@ndo IT

Tracker / CVE-2021-1513

CVE-2021-1513

High 7.5

A vulnerability in the vDaemon process of Cisco SD-WAN Software could allow an unauthenticated, remote attacker to cause a device to reload, resulting in a denial of service (DoS) condition. This vulnerability is due to insufficient handling of malformed packets. An attacker could exploit this vulnerability by sending crafted traffic to an affected device. A successful exploit could allow the attacker to cause the device to reload, resulting in a DoS condition.

Affected products and versions

cisco catalyst_sd-wan_manager · … → 20.3.1
cisco catalyst_sd-wan_manager · 20.4 → 20.4.1
cisco catalyst_sd-wan_manager · 20.5 → 20.5.1
cisco sd-wan_vbond_orchestrator
cisco vedge-100b_firmware
cisco vedge_1000_firmware
cisco vedge_100_firmware
cisco vedge_100b_firmware
cisco vedge_100m_firmware
cisco vedge_100wm_firmware
cisco vedge_2000_firmware
cisco vedge_5000_firmware
cisco vedge_cloud_firmware
cisco vsmart_controller_firmware

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References