CVE-2021-1248

Multiple vulnerabilities in certain REST API endpoints of Cisco Data Center Network Manager (DCNM) could allow an authenticated, remote attacker to execute arbitrary SQL commands on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.

Data: Cisco advisories · Cisco CSAF · NVD CVEs · NVD CPEs · CISA KEV · EPSS

SeverityHIGH
CVSS8.8
EPSS0.72% EPSS medium
CWECWE-89
KEV
Published
Modified

Products with public affected evidence

Product Advisory Affected evidence
Cisco Data Center Network Manager cisco-sa-dcnm-sql-inj-OAQOObP structured affected CSAF product_status