Vulnerabilities > Cisco > Vsmart Controller Firmware > 20.4

DATE CVE VULNERABILITY TITLE RISK
2021-09-23 CVE-2021-1546 Information Exposure Through an Error Message vulnerability in Cisco products
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information.
local
low complexity
cisco CWE-209
5.5
2021-05-06 CVE-2021-1514 OS Command Injection vulnerability in Cisco products
A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to inject arbitrary commands to be executed with Administrator privileges on the underlying operating system.
local
low complexity
cisco CWE-78
7.8