CVE-2021-1389 Details
Description
A vulnerability in the IPv6 traffic processing of Cisco IOS XR Software and Cisco NX-OS Software for certain Cisco devices could allow an unauthenticated, remote attacker to bypass an IPv6 access control list (ACL) that is configured for an interface of an affected device. The vulnerability is due to improper processing of IPv6 traffic that is sent through an affected device. An attacker could exploit this vulnerability by sending crafted IPv6 packets that traverse the affected device. A successful exploit could allow the attacker to access resources that would typically be protected by the interface ACL.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Nov 8, 2024References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ipv6-acl-CHgdYk8j | CVE | Vendor Advisory |
| https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-ipv6-acl-CHgdYk8j | [email protected] | Vendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| NVD-CWE-Other | Weakness Not in a Standard CWE Category | [email protected] |
| CWE-284 | Improper Access Control | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| cisco ios xr | < 6.6.3 7.1.0 7.2.0 |
CPE
Remediation
| |
| cisco ncs 540 | All versions |
CPE
Remediation
| |
| cisco ncs 5501 | All versions |
CPE
Remediation
| |
| cisco ncs 5501-se | All versions |
CPE
Remediation
| |
| cisco ncs 5502 | All versions |
CPE
Remediation
| |
| cisco ncs 5502-se | All versions |
CPE
Remediation
| |
| cisco ncs 5508 | All versions |
CPE
Remediation
| |
| cisco ncs 5516 | All versions |
CPE
Remediation
| |
| cisco ncs 560 | All versions |
CPE
Remediation
| |
| cisco nx-os | All versions |
CPE
Remediation
| |
| cisco nexus 3600 | All versions |
CPE
Remediation
| |
| cisco nexus 9500 r | All versions |
CPE
Remediation
| |
Change History
8 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Nov 7, 2023 | CVE Modified | [email protected] |
| Sep 20, 2022 | Reanalysis | [email protected] |
| Feb 8, 2021 | Initial Analysis | [email protected] |
| Feb 4, 2021 | CVE Modified | [email protected] |