#VU55233 Improper access control in Cisco Intersight Virtual Appliance - CVE-2021-1601
Published: July 22, 2021
Cisco Intersight Virtual Appliance
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to insufficient restrictions for IPv6 packets that are received on the external management interface. A remote attacker on the local network can access sensitive internal services and make configuration changes on the affected device.