CVE-2022-20821
Cisco IOS XR Open Port Vulnerability
⚠ KEVEPSS 11.8%
Description
Cisco IOS XR software health check opens TCP port 6379 by default on activation. An attacker can connect to the Redis instance on the open port and allow access to the Redis instance that is running within the NOSi container.
How to fix CVE-2022-20821
No package mapping is available — consult the references below for vendor-specific guidance.
Is CVE-2022-20821 being exploited?
Yes — CVE-2022-20821 is on the CISA Known Exploited Vulnerabilities (KEV) catalog. Patch immediately.
Affected packages (0)
No package mapping in OSV.