#VU50053 Input validation error in Cisco Data Center Network Manager - CVE-2021-1286
Published: January 20, 2021 / Updated: January 27, 2021
Cisco Data Center Network Manager
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to perform a reflected file download attack.
The vulnerability exists due to insufficient validation of user-supplied input in the web-based management interface. A remote attacker can trick a victim to click a link that submits malicious input to the interface and execute arbitrary script code on the target device.