Логотип exploitDog
bind:CVE-2021-1437
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-1437

Количество 3

Количество 3

nvd логотип

CVE-2021-1437

почти 5 лет назад

A vulnerability in the FlexConnect Upgrade feature of Cisco Aironet Series Access Points Software could allow an unauthenticated, remote attacker to obtain confidential information from an affected device. This vulnerability is due to an unrestricted Trivial File Transfer Protocol (TFTP) configuration. An attacker could exploit this vulnerability by sending a specific TFTP request to an affected device. A successful exploit could allow the attacker to download any file from the filesystem of the affected access point (AP).

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-777j-pmq7-4px5

больше 3 лет назад

A vulnerability in the FlexConnect Upgrade feature of Cisco Aironet Series Access Points Software could allow an unauthenticated, remote attacker to obtain confidential information from an affected device. This vulnerability is due to an unrestricted Trivial File Transfer Protocol (TFTP) configuration. An attacker could exploit this vulnerability by sending a specific TFTP request to an affected device. A successful exploit could allow the attacker to download any file from the filesystem of the affected access point (AP).

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2021-01816

почти 5 лет назад

Уязвимость функции обновления FlexConnect микропрограммного обеспечения точек доступа Cisco Aironet Access Points, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-1437

A vulnerability in the FlexConnect Upgrade feature of Cisco Aironet Series Access Points Software could allow an unauthenticated, remote attacker to obtain confidential information from an affected device. This vulnerability is due to an unrestricted Trivial File Transfer Protocol (TFTP) configuration. An attacker could exploit this vulnerability by sending a specific TFTP request to an affected device. A successful exploit could allow the attacker to download any file from the filesystem of the affected access point (AP).

CVSS3: 7.5
0%
Низкий
почти 5 лет назад
github логотип
GHSA-777j-pmq7-4px5

A vulnerability in the FlexConnect Upgrade feature of Cisco Aironet Series Access Points Software could allow an unauthenticated, remote attacker to obtain confidential information from an affected device. This vulnerability is due to an unrestricted Trivial File Transfer Protocol (TFTP) configuration. An attacker could exploit this vulnerability by sending a specific TFTP request to an affected device. A successful exploit could allow the attacker to download any file from the filesystem of the affected access point (AP).

CVSS3: 7.5
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-01816

Уязвимость функции обновления FlexConnect микропрограммного обеспечения точек доступа Cisco Aironet Access Points, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 7.5
0%
Низкий
почти 5 лет назад

Уязвимостей на страницу