Improper access control in Cisco Intersight Virtual Appliance - CVE-2021-1600
Published: July 22, 2021
Cisco Intersight Virtual Appliance
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to insufficient restrictions for IPv4 packets that are received on the external management interface. A remote attacker on the local network can access sensitive internal services and make configuration changes on the affected device.