CVE-2021-1274High· 7.5▾ TwilightMultiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute denial of service (DoS) attacks against an affected device. For more information about these vulnerabilities, see the Details […
▾ Twilight zone — High severity, or a signal on a lesser flaw
impact 41.3 · likelihood 0.4 · exploitation 0
Need a working PoC? Pro members can cast a request and our team develops one — it lands right here.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via CSAF
Last analysed / modified upstream
1.9%
Multiple vulnerabilities in Cisco SD-WAN products could allow an unauthenticated, remote attacker to execute denial of service (DoS) attacks against an affected device.
For more information about these vulnerabilities, see the Details ["#details"] section of this advisory.
Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.
Cisco SD-WAN Denial of Service Vulnerabilities. Released 2021-01-20, updated 2021-02-02.
Affected:
Cisco has released software updates that address this vulnerability. https://software.cisco.com
Connected by shared product, vendor, weakness, or advisory.
CVE-2021-1278Medium· 5.5Cisco SD-WAN Denial of Service Vulnerabilties
CVE-2021-1529High· 7.8Cisco IOS XE SD-WAN Software Command Injection Vulnerability (CVE-2021-1529)
CVE-2021-34727Critical· 9.8Cisco IOS XE SD-WAN Software Buffer Overflow Vulnerability (CVE-2021-34727)
CVE-2021-1612Medium· 5.5Cisco IOS XE SD-WAN Arbitrary File Overwrite Vulnerability
CVE-2026-20306Critical· 9.1A vulnerability in the REST API of Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to perform command injection attacks on the underlying operating system and elevate privileges to root
CVE-2026-20305Critical· 9.1A vulnerability in the diagnostic tools of Cisco ISE and ISE-PIC could allow an authenticated, remote attacker to perform command injection attacks on the underlying operating system and elevate privileges to root