Improper access control in Cisco NX-OS and Cisco Nexus 9500 Series - CVE-2021-1591
Published: August 26, 2021
Vulnerability details
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to oversubscription of resources that occurs when applying ACLs to port channel interfaces. A remote attacker can access network resources that would be protected by the ACL that was applied on the port channel interface.
Affected software
Cisco Nexus 9500 Series