CVE-2021-1471
Multiple vulnerabilities in Cisco Jabber for Windows, Cisco Jabber for MacOS, and Cisco Jabber for mobile platforms could allow an attacker to execute arbitrary programs on the underlying operating system with elevated privileges, access sensitive information, intercept protected network traffic, or cause a denial of service (DoS) condition. For more information about these vulnerabilities, see the Details section of this advisory.
Scoring
- Severity
- CRITICAL
- CVSS base score
- 9.9
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
- EPSS probability
- 0.30%
- CWE
- CWE-170
- Published
- 2021-03-24
- Last modified
- 2026-03-13
Affected products
- Cisco Cisco Jabber
Weakness type
Related vulnerabilities
- CVE-2021-1418 — Cisco Jabber Desktop and Mobile Client Software Vulnerabilities
- CVE-2021-1411 — Cisco Jabber Desktop and Mobile Client Software Vulnerabilities
- CVE-2021-1469 — Cisco Jabber Desktop and Mobile Client Software Vulnerabilities
- CVE-2021-1417 — Cisco Jabber Desktop and Mobile Client Software Vulnerabilities
- CVE-2026-8721 — Crypt::OpenSSL::PKCS12 versions through 1.94 for Perl truncates passwords with embedded NULLs
- CVE-2026-5067 — Out-of-bounds read/write in HTTP WebSocket upgrade via non-null-terminated Sec-WebSocket-Key
- CVE-2024-31484 — A vulnerability has been identified in CPC80 Central Processing/Communication (All versions < V16.41), CPCI85 Central Pr
- CVE-2026-34464 — Sandboxie-Plus NamedPipeServer OpenHandler stack overflow via unterminated server field