CVE-2021-1419

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
23/09/2021
Last modified:
07/11/2023

Description

A vulnerability in the SSH management feature of multiple Cisco Access Points (APs) platforms could allow a local, authenticated user to modify files on the affected device and possibly gain escalated privileges. The vulnerability is due to improper checking on file operations within the SSH management interface. A network administrator user could exploit this vulnerability by accessing an affected device through SSH management to make a configuration change. A successful exploit could allow the attacker to gain privileges equivalent to the root user.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:cisco:aironet_1542d_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:aironet_1542d:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:aironet_1562d_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:aironet_1562d:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:aironet_1815m_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:aironet_1815m:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:aironet_1830e_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:aironet_1830e:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:aironet_1840i_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:aironet_1840i:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:aironet_1850e_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:aironet_1850e:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:aironet_2800i_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:aironet_2800i:-:*:*:*:*:*:*:*
cpe:2.3:o:cisco:aironet_3800p_firmware:-:*:*:*:*:*:*:*