CVE-2021-1498
Cisco HyperFlex HX Data Platform Command Injection Vulnerability
⚠ KEVEPSS 100.0%
Description
Cisco HyperFlex HX Installer Virtual Machine contains an insufficient input validation vulnerability which could allow an attacker to execute commands on an affected device as the tomcat8 user.
How to fix CVE-2021-1498
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2021-1498 being exploited?
Yes — CVE-2021-1498 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.