A vulnerability in the authentication, authorization, and accounting (AAA) function of Cisco IOS XE Software could allow an unauthenticated, remote attacker to bypass NETCONF or RESTCONF authentication and do either of the following: Install, manipulate, or delete the configuration of an affected device Cause memory corruption that results in a denial of service (DoS) on an affected device This vulnerability is due to an uninitialized variable. An attacker could exploit this vulnerability by sending a series of NETCONF or RESTCONF requests to an affected device. A successful exploit could allow the attacker to use NETCONF or RESTCONF to install, manipulate, or delete the configuration of a network device or to corrupt memory on the device, resulting a DoS.
References
Link | Resource |
---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-aaa-Yx47ZT8Q | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-09-22 20:15
Updated : 2022-07-08 11:21
NVD link : CVE-2021-1619
Mitre link : CVE-2021-1619
JSON object : View
CWE
CWE-908
Use of Uninitialized Resource
Products Affected
cisco
- ios_xe_sd-wan_16.10.4_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.9.3_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1b_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.1a_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.10.2_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.2r_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.10.3b_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1d_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1e_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.12.1a_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.12.5_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.12.3_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.9.2_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.10.3b_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.1_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.10.6_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.9.2_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.1b1_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1c_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.2r_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.11.1s_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan
- ios_xe_sd-wan_16.10.3b_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.11.1b_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.10.6_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.10.4_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.12.4_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.10.3a_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.9.3_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.3_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.12.3_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.11.1s_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.9.1_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.1e_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.4_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.2r_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.11.1b_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.10.5_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.1e_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1b1_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.1e_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.9.2_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.1c_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.11.1s_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.10.1_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.1c_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.10.3b_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.3_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.9.1_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.11.1b_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1a_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.5_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.1b1_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.12.1b1_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.9.1_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.1a_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.12.1b_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.12.4_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.10.4_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.10.5_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.4a_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.10.3a_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.11.1d_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.1b_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.1d_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.1e_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.10.1_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.11.1d_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.10.1_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.11.1a_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.11.1_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.4_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.10.6_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.10.4_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.9.4_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.10.6_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.11.1b_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.10.3_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.9.1_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.11.1_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.10.2_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1c_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.2r_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.1b1_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.12.1c_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.9.4_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.1b1_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.11.1s_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.9.3_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.11.1a_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.2r_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.4a_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.11.1a_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.12.5_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.9.4_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.10.5_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.3_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.9.2_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1d_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.10.3a_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.1b_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.1a_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.5_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.12.1e_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.11.1a_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.9.3_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.1d_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.10.5_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.12.5_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.4_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.12.1b_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1b_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.11.1a_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.12.1d_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.10.3a_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.5_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.10.3_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.1_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.10.2_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.11.1_when_installed_on_integrated_services_virtual
- ios_xe
- ios_xe_sd-wan_16.10.3_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.10.3_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.10.3b_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.11.1f_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.1_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.12.1c_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.11.1_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.9.4_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.10.1_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.12.4_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.12.1a_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.11.1s_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.1_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.10.5_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.11.1b_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.10.3a_when_installed_on_cloud_services_router_1000v
- ios_xe_sd-wan_16.10.4_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.3_when_installed_on_1000_series_integrated_services
- ios_xe_sd-wan_16.10.2_when_installed_on_4000_series_integrated_services
- ios_xe_sd-wan_16.12.1d_when_installed_on_1100_series_industrial_integrated_services
- ios_xe_sd-wan_16.12.4a_when_installed_on_integrated_services_virtual
- ios_xe_sd-wan_16.12.2r_when_installed_on_asr_1000_series_aggregation_services
- ios_xe_sd-wan_16.10.6_when_installed_on_integrated_services_virtual