CVE-2021-1578
A vulnerability in an API endpoint of Cisco Application Policy Infrastructure Controller (APIC) and Cisco Cloud Application Policy Infrastructure Controller (Cloud APIC) could allow an authenticated, remote attacker to elevate privileges to Administrator on an affected device. This vulnerability is due to an improper policy default setting. An attacker could exploit this vulnerability by using a non-privileged credential for Cisco ACI Multi-Site Orchestrator (MSO) to send a specific API request to a managed Cisco APIC or Cloud APIC device. A successful exploit could allow the attacker to obtain Administrator credentials on the affected device.
Scoring
- Severity
- HIGH
- CVSS base score
- 8.8
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
- EPSS probability
- 1.05%
- CWE
- CWE-636
- Published
- 2021-08-25
- Last modified
- 2026-03-13
Affected products
- Cisco Cisco Application Policy Infrastructure Controller (APIC)
Weakness type
Related vulnerabilities
- CVE-2026-22034 — Snuffleupagus vulnerable to RCE on instances with upload validation enabled but without the VLD package
- CVE-2025-54870 — VTun-ng's failure to initialize encryption modules may cause reversion to plaintext
- CVE-2023-4030 — A vulnerability was reported in BIOS for ThinkPad P14s Gen 2, P15s Gen 2, T14 Gen 2, and T15 Gen 2 that could cause the
- CVE-2026-53913 — Apache Camel Keycloak: KeycloakSecurityPolicy verifies the bearer access token only inside its role and permission checks, so in the default configuration the token is never verified and any non-null bearer value is accepted
- CVE-2026-53459 — Bambuddy's authentication fails open on database errors, allowing unauthenticated access to all endpoints
- CVE-2026-73421 — NextAuth.js: Configuration errors can cause existence-based auth checks to fail open (auth object populated with an error)
- CVE-2026-40525 — OpenViking < 0.3.9 Authentication Bypass via VikingBot OpenAPI
- CVE-2026-70452 — rsync 3.1.0 < 3.5.0 Access Control Bypass via DNS Resolution Failure