570
VMScore

CVE-2021-1619

Published: 23/09/2021 Updated: 07/11/2023
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

A vulnerability in the authentication, authorization, and accounting (AAA) function of Cisco IOS XE Software could allow an unauthenticated, remote malicious user to bypass NETCONF or RESTCONF authentication and do either of the following: Install, manipulate, or delete the configuration of an affected device Cause memory corruption that results in a denial of service (DoS) on an affected device This vulnerability is due to an uninitialized variable. An attacker could exploit this vulnerability by sending a series of NETCONF or RESTCONF requests to an affected device. A successful exploit could allow the malicious user to use NETCONF or RESTCONF to install, manipulate, or delete the configuration of a network device or to corrupt memory on the device, resulting a DoS.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ios xe 16.6.1

cisco ios xe 16.4.1

cisco ios xe 16.3.1

cisco ios xe 16.3.1a

cisco ios xe 16.3.2

cisco ios xe 16.3.3

cisco ios xe 16.5.1

cisco ios xe 16.5.1a

cisco ios xe 16.3.4

cisco ios xe 16.5.1b

cisco ios xe 16.4.2

cisco ios xe 16.3.5b

cisco ios xe 16.3.6

cisco ios xe 16.6.3

cisco ios xe 16.8.1

cisco ios xe 16.7.1

cisco ios xe 16.6.2

cisco ios xe 16.9.1

cisco ios xe 16.3.5

cisco ios xe 16.5.2

cisco ios xe 16.8.1a

cisco ios xe 16.8.1s

cisco ios xe 16.8.1b

cisco ios xe 16.8.2

cisco ios xe 16.7.2

cisco ios xe 16.8.1d

cisco ios xe 16.7.3

cisco ios xe 16.7.1a

cisco ios xe 16.7.1b

cisco ios xe 16.8.1c

cisco ios xe 16.8.1e

cisco ios xe 16.4.3

cisco ios xe 16.9.1s

cisco ios xe 16.9.1c

cisco ios xe 16.9.1b

cisco ios xe 16.5.3

cisco ios xe 16.3.7

cisco ios xe 16.3.8

cisco ios xe 16.9.1d

cisco ios xe 16.6.4s

cisco ios xe 16.6.4

cisco ios xe 16.10.1

cisco ios xe 16.7.4

cisco ios xe 16.9.1a

cisco ios xe 16.9.2a

cisco ios xe 16.9.2

cisco ios xe 16.6.4a

cisco ios xe 16.12.1

cisco ios xe 16.6.5

cisco ios xe 16.11.1

cisco ios xe 17.1.1

cisco ios xe 16.11.1a

cisco ios xe 16.12.1c

cisco ios xe 16.12.1t

cisco ios xe 16.11.2

cisco ios xe 16.12.1s

cisco ios xe 16.12.1a

cisco ios xe 16.12.1x

cisco ios xe 16.11.1c

cisco ios xe 16.11.1b

cisco ios xe 16.11.1s

cisco ios xe 16.12.1w

cisco ios xe 16.10.1s

cisco ios xe 16.10.1d

cisco ios xe 16.9.2s

cisco ios xe 16.6.6

cisco ios xe 16.9.3h

cisco ios xe 16.6.5b

cisco ios xe 16.6.5a

cisco ios xe 16.3.9

cisco ios xe 16.9.3a

cisco ios xe 16.10.1a

cisco ios xe 16.10.1f

cisco ios xe 16.10.1g

cisco ios xe 16.10.2

cisco ios xe 16.9.3

cisco ios xe 16.12.1y

cisco ios xe 16.10.1e

cisco ios xe 16.10.1b

cisco ios xe 16.8.3

cisco ios xe 16.9.3s

cisco ios xe 16.10.1c

cisco ios xe 16.9.4

cisco ios xe 16.12.2

cisco ios xe 16.6.7a

cisco ios xe 16.9.4c

cisco ios xe 16.12.2a

cisco ios xe 16.6.7

cisco ios xe 16.10.3

cisco ios xe 16.12.4

cisco ios xe 16.3.10

cisco ios xe 16.9.5

cisco ios xe 16.9.5f

cisco ios xe 16.6.8

cisco ios xe 16.12.3

cisco ios xe 17.2.1

cisco ios xe 16.6.9

cisco ios xe 17.1.1s

cisco ios xe 16.12.2t

cisco ios xe 17.1.1a

cisco ios xe 16.12.2s

cisco ios xe 16.12.3a

cisco ios xe 17.1.1t

cisco ios xe 16.3.11

cisco ios xe 17.2.1a

cisco ios xe 17.2.1v

cisco ios xe 16.12.1z

cisco ios xe 16.12.3s

cisco ios xe 17.2.1r

cisco ios xe 17.1.2

cisco ios xe 16.12.4a

cisco ios xe 17.1.3

cisco ios xe 16.12.1za

cisco ios xe sd-wan

cisco ios xe 16.9.6

cisco ios xe 16.12.5

cisco ios xe 16.12.5b

cisco ios xe 16.12.1z1

cisco ios xe 16.12.5a

cisco ios xe 16.9.7

cisco ios xe sd-wan 16.12.2r when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.11.1s when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.11.1s when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.12.1b when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1a when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.10.3b when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.11.1 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1d when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.12.1c when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1b1 when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.12.1d when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.1e when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.2r when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.1d when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.3 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.1 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.11.1s when installed on integrated services virtual router

cisco ios xe sd-wan 16.11.1s when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.10.2 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.4 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.10.3 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.5 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.1b1 when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.10.1 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.4 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.1 when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.10.5 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.1 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.10.4 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.4a when installed on integrated services virtual router

cisco ios xe sd-wan 16.11.1 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.9.4 when installed on integrated services virtual router

cisco ios xe sd-wan 16.10.1 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.3 when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.10.3a when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.5 when installed on integrated services virtual router

cisco ios xe sd-wan 16.10.4 when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.12.1c when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.10.2 when installed on integrated services virtual router

cisco ios xe sd-wan 16.10.4 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.1b1 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.9.4 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.3 when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.4a when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.12.1a when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.1b when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.11.1s when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.10.6 when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.10.4 when installed on integrated services virtual router

cisco ios xe sd-wan 16.10.3a when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.5 when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.12.1b when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.5 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.11.1b when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.9.1 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.2r when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.9.2 when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.1d when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.11.1b when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.12.2r when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.9.3 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.4 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.10.1 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.4 when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.12.3 when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.9.2 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.9.2 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.10.5 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.9.4 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.10.3b when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.3 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.11.1 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.1 when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.11.1a when installed on integrated services virtual router

cisco ios xe sd-wan 16.10.4 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1e when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.10.5 when installed on integrated services virtual router

cisco ios xe sd-wan 16.11.1a when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.10.2 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1b when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.10.3b when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1c when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.12.5 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.10.3a when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1a when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.10.3 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1a when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.4 when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.12.1d when installed on integrated services virtual router

cisco ios xe sd-wan 16.10.6 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.11.1a when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.1e when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.10.5 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1a when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.11.1b when installed on integrated services virtual router

cisco ios xe sd-wan 16.10.1 when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.1 when installed on integrated services virtual router

cisco ios xe sd-wan 16.11.1d when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.11.1f when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.10.3a when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.12.1b when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.12.4a when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.1b when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.1a when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.10.2 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.1e when installed on integrated services virtual router

cisco ios xe sd-wan 16.10.6 when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.1c when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.11.1b when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.10.6 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.9.3 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.9.3 when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.1b1 when installed on integrated services virtual router

cisco ios xe sd-wan 16.10.3b when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.11.1a when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.11.1d when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.3 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.9.1 when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.2r when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.11.1a when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.10.3 when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.1c when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.9.1 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1e when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.1c when installed on integrated services virtual router

cisco ios xe sd-wan 16.10.3 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.4 when installed on integrated services virtual router

cisco ios xe sd-wan 16.9.3 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.2r when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.9.2 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.1d when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.1b1 when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.11.1b when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.10.5 when installed on cloud services router 1000v series

cisco ios xe sd-wan 16.9.4 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.10.3b when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.11.1 when installed on integrated services virtual router

cisco ios xe sd-wan 16.12.1 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.12.5 when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.10.6 when installed on asr 1000 series aggregation services routers

cisco ios xe sd-wan 16.12.1b1 when installed on 1000 series integrated services routers

cisco ios xe sd-wan 16.10.3a when installed on 4000 series integrated services routers

cisco ios xe sd-wan 16.12.1e when installed on 1100 series industrial integrated services routers

cisco ios xe sd-wan 16.9.1 when installed on 4000 series integrated services routers

Vendor Advisories

A vulnerability in the authentication, authorization, and accounting (AAA) function of Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass NETCONF or RESTCONF authentication and do either of the following: Install, manipulate, or delete the configuration of an affected device Cause memory corruption that results in a d ...