cve-2021-1497
HIGH cisa_known_exploited
Description
Cisco HyperFlex HX Installer Virtual Machine contains an insufficient input validation vulnerability which could allow an attacker to execute commands on an affected device as the root user.
Timeline
- Published
- 2021-11-03
- Last Modified
- 2021-11-03
CVSS Details
CVSS details not available.
Affected Products
No product information available.
References
No references available.
Linked Vulnerabilities
No linked vulnerabilities found.
{
"cvss": 0.0,
"datePublished": "2021-11-03",
"dateUpdated": "2021-11-03",
"description": "Cisco HyperFlex HX Installer Virtual Machine contains an insufficient input validation vulnerability which could allow an attacker to execute commands on an affected device as the root user.",
"dueDate": "2021-11-17",
"id": "CVE-2021-1497",
"kev_catalogs": [
"cisa"
],
"knownRansomwareCampaignUse": "Unknown",
"notes": "https://nvd.nist.gov/vuln/detail/CVE-2021-1497",
"product": "HyperFlex HX",
"requiredAction": "Apply updates per vendor instructions.",
"severity": "HIGH",
"source": "cisa_known_exploited",
"title": "Cisco HyperFlex HX Installer Virtual Machine Command Injection Vulnerability",
"vendor": "Cisco"
}
Enrichment data
Aggregated bundle (all enrichments)