CVE-2021-34739

A vulnerability in the web-based management interface of multiple Cisco Small Business Series Switches could allow an unauthenticated, remote attacker to replay valid user session credentials and gain unauthorized access to the web-based management interface of an affected device. This vulnerability is due to insufficient expiration of session credentials. An attacker could exploit this vulnerability by conducting a man-in-the-middle attack against an affected device to intercept valid session credentials and then replaying the intercepted credentials toward the same device at a later time. A successful exploit could allow the attacker to access the web-based management interface with administrator privileges.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.1 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
ciscoCNA
8.1 HIGH
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 65%
VendorProductVersion
ciscosf250-24_firmware
𝑥
≤ 2.5
ciscosf250-24p_firmware
𝑥
≤ 2.5
ciscosf250-48_firmware
𝑥
≤ 2.5
ciscosf250-48hp_firmware
𝑥
≤ 2.5
ciscosf250-08_firmware
𝑥
≤ 2.5
ciscosf250-08hp_firmware
𝑥
≤ 2.5
ciscosf250-10p_firmware
𝑥
≤ 2.5
ciscosf250-18_firmware
𝑥
≤ 2.5
ciscosf250-26_firmware
𝑥
≤ 2.5
ciscosf250-26hp_firmware
𝑥
≤ 2.5
ciscosf250-26p_firmware
𝑥
≤ 2.5
ciscosf250-50_firmware
𝑥
≤ 2.5
ciscosf250-50hp_firmware
𝑥
≤ 2.5
ciscosf250-50p_firmware
𝑥
≤ 2.5
ciscosf250x-24_firmware
𝑥
≤ 2.5
ciscosf250x-24p_firmware
𝑥
≤ 2.5
ciscosf250x-48_firmware
𝑥
≤ 2.5
ciscosf250x-48p_firmware
𝑥
≤ 2.5
ciscosf350-08_firmware
𝑥
≤ 2.5
ciscosf350-24_firmware
𝑥
≤ 2.5
ciscosf350-24mp_firmware
𝑥
≤ 2.5
ciscosf350-24p_firmware
𝑥
≤ 2.5
ciscosf350-48_firmware
𝑥
≤ 2.5
ciscosf350-8mp_firmware
𝑥
≤ 2.5
ciscosf350-48p_firmware
𝑥
≤ 2.5
ciscosf352-08_firmware
𝑥
≤ 2.5
ciscosf352-08mp_firmware
𝑥
≤ 2.5
ciscosf352-08p_firmware
𝑥
≤ 2.5
ciscosf350-8pd_firmware
𝑥
≤ 2.5
ciscosf350-10_firmware
𝑥
≤ 2.5
ciscosf350-10mp_firmware
𝑥
≤ 2.5
ciscosf350-10p_firmware
𝑥
≤ 2.5
ciscosf350-10sfp_firmware
𝑥
≤ 2.5
ciscosf350-20_firmware
𝑥
≤ 2.5
ciscosf350-28_firmware
𝑥
≤ 2.5
ciscosf350-28mp_firmware
𝑥
≤ 2.5
ciscosf350-28p_firmware
𝑥
≤ 2.5
ciscosf350-28sfp_firmware
𝑥
≤ 2.5
ciscosf350-52_firmware
𝑥
≤ 2.5
ciscosf350-52mp_firmware
𝑥
≤ 2.5
ciscosf350-52p_firmware
𝑥
≤ 2.5
ciscosf355-10p_firmware
𝑥
≤ 2.5
ciscosg350x-8pmd_firmware
𝑥
≤ 2.5
ciscosg350x-12pmv_firmware
𝑥
≤ 2.5
ciscosg350x-24_firmware
𝑥
≤ 2.5
ciscosg350x-24p_firmware
𝑥
≤ 2.5
ciscosg350x-24mp_firmware
𝑥
≤ 2.5
ciscosg350x-24pd_firmware
𝑥
≤ 2.5
ciscosg350x-24pv_firmware
𝑥
≤ 2.5
ciscosg350x-48_firmware
𝑥
≤ 2.5
ciscosg350x-48p_firmware
𝑥
≤ 2.5
ciscosg350x-48mp_firmware
𝑥
≤ 2.5
ciscosg350x-48pv_firmware
𝑥
≤ 2.5
ciscosg350xg-2f10_firmware
𝑥
≤ 2.5
ciscosg350xg-24f_firmware
𝑥
≤ 2.5
ciscosg350xg-24t_firmware
𝑥
≤ 2.5
ciscosg350xg-48t_firmware
𝑥
≤ 2.5
ciscosx350x-08_firmware
𝑥
≤ 2.5
ciscosx350x-12_firmware
𝑥
≤ 2.5
ciscosx350x-24f_firmware
𝑥
≤ 2.5
ciscosx350x-24_firmware
𝑥
≤ 2.5
ciscosx350x-52_firmware
𝑥
≤ 2.5
ciscosf550x-24_firmware
𝑥
≤ 2.5
ciscosf550x-24p_firmware
𝑥
≤ 2.5
ciscosf550x-24mp_firmware
𝑥
≤ 2.5
ciscosf550x-48_firmware
𝑥
≤ 2.5
ciscosf550x-48p_firmware
𝑥
≤ 2.5
ciscosf550x-48mp_firmware
𝑥
≤ 2.5
ciscosg550x-24_firmware
𝑥
≤ 2.5
ciscosg550x-24p_firmware
𝑥
≤ 2.5
ciscosg550x-24mp_firmware
𝑥
≤ 2.5
ciscosg550x-24mpp_firmware
𝑥
≤ 2.5
ciscosg550x-48_firmware
𝑥
≤ 2.5
ciscosg550x-48p_firmware
𝑥
≤ 2.5
ciscosg550x-48mp_firmware
𝑥
≤ 2.5
ciscosg550xg-8f8t_firmware
𝑥
≤ 2.5
ciscosg550xg-24f_firmware
𝑥
≤ 2.5
ciscosg550xg-24t_firmware
𝑥
≤ 2.5
ciscosg550xg-48t_firmware
𝑥
≤ 2.5
ciscosx550x-12f_firmware
𝑥
≤ 2.5
ciscosx550x-16ft_firmware
𝑥
≤ 2.5
ciscosx550x-24ft_firmware
𝑥
≤ 2.5
ciscosx550x-24f_firmware
𝑥
≤ 2.5
ciscosx550x-24_firmware
𝑥
≤ 2.5
ciscosx550x-52_firmware
𝑥
≤ 2.5
ciscocbs250-8t-d_firmware
𝑥
≤ 3.1
ciscocbs250-8pp-d_firmware
𝑥
≤ 3.1
ciscocbs250-8t-e-2g_firmware
𝑥
≤ 3.1
ciscocbs250-8pp-e-2g_firmware
𝑥
≤ 3.1
ciscocbs250-8p-e-2g_firmware
𝑥
≤ 3.1
ciscocbs250-8fp-e-2g_firmware
𝑥
≤ 3.1
ciscocbs250-16t-2g_firmware
𝑥
≤ 3.1
ciscocbs250-16p-2g_firmware
𝑥
≤ 3.1
ciscocbs250-24t-4g_firmware
𝑥
≤ 3.1
ciscocbs250-24pp-4g_firmware
𝑥
≤ 3.1
ciscocbs250-24p-4g_firmware
𝑥
≤ 3.1
ciscocbs250-24fp-4g_firmware
𝑥
≤ 3.1
ciscocbs250-48t-4g_firmware
𝑥
≤ 3.1
ciscocbs250-48pp-4g_firmware
𝑥
≤ 3.1
ciscocbs250-48p-4g_firmware
𝑥
≤ 3.1
ciscocbs250-24t-4x_firmware
𝑥
≤ 3.1
ciscocbs250-24p-4x_firmware
𝑥
≤ 3.1
ciscocbs250-24fp-4x_firmware
𝑥
≤ 3.1
ciscocbs250-48t-4x_firmware
𝑥
≤ 3.1
ciscocbs250-48p-4x_firmware
𝑥
≤ 3.1
ciscocbs350-8t-e-2g_firmware
𝑥
≤ 3.1
ciscocbs350-8p-2g_firmware
𝑥
≤ 3.1
ciscocbs350-8p-e-2g_firmware
𝑥
≤ 3.1
ciscocbs350-8fp-2g_firmware
𝑥
≤ 3.1
ciscocbs350-8fp-e-2g_firmware
𝑥
≤ 3.1
ciscocbs350-8s-e-2g_firmware
𝑥
≤ 3.1
ciscocbs350-16t-2g_firmware
𝑥
≤ 3.1
ciscocbs350-16t-e-2g_firmware
𝑥
≤ 3.1
ciscocbs350-16p-2g_firmware
𝑥
≤ 3.1
ciscocbs350-16p-e-2g_firmware
𝑥
≤ 3.1
ciscocbs350-16fp-2g_firmware
𝑥
≤ 3.1
ciscocbs350-24t-4g_firmware
𝑥
≤ 3.1
ciscocbs350-24p-4g_firmware
𝑥
≤ 3.1
ciscocbs350-24fp-4g_firmware
𝑥
≤ 3.1
ciscocbs350-24s-4g_firmware
𝑥
≤ 3.1
ciscocbs350-48t-4g_firmware
𝑥
≤ 3.1
ciscocbs350-48p-4g_firmware
𝑥
≤ 3.1
ciscocbs350-48fp-4g_firmware
𝑥
≤ 3.1
ciscocbs350-24t-4x_firmware
𝑥
≤ 3.1
ciscocbs350-24p-4x_firmware
𝑥
≤ 3.1
ciscocbs350-24fp-4x_firmware
𝑥
≤ 3.1
ciscocbs350-48t-4x_firmware
𝑥
≤ 3.1
ciscocbs350-48p-4x_firmware
𝑥
≤ 3.1
ciscocbs350-48fp-4x_firmware
𝑥
≤ 3.1
ciscocbs350-8mgp-2x_firmware
𝑥
≤ 3.1
ciscocbs350-8mp-2x_firmware
𝑥
≤ 3.1
ciscocbs350-24mgp-4x_firmware
𝑥
≤ 3.1
ciscocbs350-12np-4x_firmware
𝑥
≤ 3.1
ciscocbs350-24ngp-4x_firmware
𝑥
≤ 3.1
ciscocbs350-48ngp-4x_firmware
𝑥
≤ 3.1
ciscocbs350-8xt_firmware
𝑥
≤ 3.1
ciscocbs350-12xs_firmware
𝑥
≤ 3.1
ciscocbs350-12xt_firmware
𝑥
≤ 3.1
ciscocbs350-16xts_firmware
𝑥
≤ 3.1
ciscocbs350-24xs_firmware
𝑥
≤ 3.1
ciscocbs350-24xt_firmware
𝑥
≤ 3.1
ciscocbs350-24xts_firmware
𝑥
≤ 3.1
ciscocbs350-48xt-4x_firmware
𝑥
≤ 3.1
ciscoesw2-350g-52_firmware
𝑥
≤ 2.5
ciscoesw2-350g-52dc_firmware
𝑥
≤ 2.5
ciscoesw2-550x-48_firmware
𝑥
≤ 2.5
ciscoesw2-550x-48dc_firmware
𝑥
≤ 2.5
ciscosf200-24_firmware
-
ciscosf200-24p_firmware
-
ciscosf200-24fp_firmware
-
ciscosf200-48_firmware
-
ciscosf200-48p_firmware
-
ciscosg200-08_firmware
-
ciscosg200-08p_firmware
-
ciscosg200-10fp_firmware
-
ciscosg200-18_firmware
-
ciscosg200-26_firmware
-
ciscosg200-26p_firmware
-
ciscosg200-26fp_firmware
-
ciscosg200-50_firmware
-
ciscosg200-50p_firmware
-
ciscosg200-50fp_firmware
-
ciscosf300-08_firmware
1.4.11.02
ciscosf302-08_firmware
1.4.11.02
ciscosf302-08p_firmware
1.4.11.02
ciscosf302-08pp_firmware
1.4.11.02
ciscosf302-08mp_firmware
1.4.11.02
ciscosf302-08mpp_firmware
1.4.11.02
ciscosf300-24_firmware
1.4.11.02
ciscosf300-24p_firmware
1.4.11.02
ciscosf300-24pp_firmware
1.4.11.02
ciscosf300-24mp_firmware
1.4.11.02
ciscosf300-48_firmware
1.4.11.02
ciscosf300-48p_firmware
1.4.11.02
ciscosf300-48pp_firmware
1.4.11.02
ciscosg300-10_firmware
1.4.11.02
ciscosg300-10sfp_firmware
1.4.11.02
ciscosg300-10p_firmware
1.4.11.02
ciscosg300-10pp_firmware
1.4.11.02
ciscosg300-10mp_firmware
1.4.11.02
ciscosg300-10mpp_firmware
1.4.11.02
ciscosg300-20_firmware
1.4.11.02
ciscosg300-28_firmware
1.4.11.02
ciscosg300-28p_firmware
1.4.11.02
ciscosg300-28pp_firmware
1.4.11.02
ciscosg300-28mp_firmware
1.4.11.02
ciscosg300-52_firmware
1.4.11.02
ciscosg300-52p_firmware
1.4.11.02
ciscosg300-52mp_firmware
1.4.11.02
ciscosg300-28sfp_firmware
1.4.11.02
ciscosf500-24_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosf500-24p_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosf500-24mp_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosf500-48_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosf500-48p_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosf500-48mp_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500-28_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500-28p_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500-28mpp_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500-52_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500-52p_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500-52mp_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500x-24_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500x-24p_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500x-24mpp_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500x-48_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500x-48p_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500x-48mp_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
ciscosg500xg-8f8t_firmware
2.5.5.0 ≤
𝑥
< 2.5.8.12
𝑥
= Vulnerable software versions