← Vulnerability feed

Vulnerability record · CVE-2021-1546 · published 23 September 2021

CVE-2021-1546: Cisco catalyst sd-wan manager error message information leak vulnerability

Cisco · Catalyst Sd Wan Manager

A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information. This vulnerability is due to improper protections on file access through the CLI. An attacker could exploit this vulnerability by running a CLI command that targets an arbitrary file on the local system. A successful exploit could allow the attacker to return portions of an arbitrary file, possibly resulting in the disclosure of sensitive information.

5.5 CVSS 3.1 Medium EPSS 0.23% · top 87.1% CWE-209 · Error message information leak
5.5CVSS 3.1 base score, v2 2.1
0.23%EPSS exploitation probability, 30 days
NoNot in CISA KEV
12Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

A vulnerability in the CLI of Cisco SD-WAN Software could allow an authenticated, local attacker to access sensitive information. This vulnerability is due to improper protections on file access through the CLI. An attacker could exploit this vulnerability by running a CLI command that targets an arbitrary file on the local system. A successful exploit could allow the attacker to return portions of an arbitrary file, possibly resulting in the disclosure of sensitive information.

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

Affected products

12 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2021-1546 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

10.0CVE-2026-20182Cisco Catalyst SD-WAN peering authentication bypass grants admin accessThe peering authentication mechanism in Cisco Catalyst SD-WAN Controller, Manager and Validator does not work properly, allowing crafted requests to …KEVEPSS 92%analysed10.0CVE-2026-20127Cisco Catalyst SD-WAN peering authentication bypassThe peering authentication mechanism in Cisco Catalyst SD-WAN Controller, Manager and Validator does not work properly, letting an unauthenticated re…KEVEPSS 88%analysed10.0CVE-2021-44228Apache Log4j2 JNDI lookup remote code executionApache Log4j2 versions 2.0-beta9 through 2.15.0 (excluding 2.12.2, 2.12.3, and 2.3.1) do not protect against attacker-controlled LDAP and other JNDI …KEVEPSS 100%analysed9.8CVE-2026-76504Cisco catalyst sd-wan manager vulnerabilityA vulnerability in the API session-based authentication management of Cisco Catalyst SD-WAN Manager could allow an unauthenticated, remote attacker t…KEVEPSS 1.8%7.8CVE-2026-20245Cisco Catalyst SD-WAN CLI command injection via crafted file uploadCisco Catalyst SD-WAN Controller, Manager and Validator fail to properly validate user-supplied input in the CLI, allowing an authenticated local att…KEVEPSS 25%analysed7.8CVE-2022-20775Cisco SD-WAN CLI access control flaw allows root privilege escalationCisco SD-WAN Software has improper access controls on commands within the application CLI, letting an authenticated local attacker run a crafted comm…KEVEPSS 12%analysed7.5CVE-2026-20133Cisco Catalyst SD-WAN Manager insufficient file system restrictions expose dataCisco Catalyst SD-WAN Software has insufficient file system restrictions that let an attacker read sensitive files on the underlying operating system…KEVEPSS 32%analysed7.5CVE-2026-20128Cisco Catalyst SD-WAN Manager DCA credential file exposureCisco Catalyst SD-WAN Manager stores the Data Collection Agent (DCA) user password in a recoverable credential file on the affected system. An unauth…KEVEPSS 7.1%analysed

Source: NIST National Vulnerability Database (record CVE-2021-1546), CISA KEV, FIRST EPSS (scores of 2026-10-07). This page is refreshed as NVD updates the record.