Improper access control in Cisco Nexus 9500 Series and Cisco NX-OS - CVE-2021-1591
Published: August 26, 2021
Cisco Nexus 9500 Series
Cisco NX-OS
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to oversubscription of resources that occurs when applying ACLs to port channel interfaces. A remote attacker can access network resources that would be protected by the ACL that was applied on the port channel interface.