CVE-2021-1566 is a high-severity vulnerability affecting Cisco AsyncOS for Cisco Email Security Appliance (ESA) and Web Security Appliance (WSA) when integrated with Cisco AMP for Endpoints. This flaw stems from improper certificate validation during TLS connections, allowing an unauthenticated, remote attacker to perform a man-in-the-middle (MitM) attack. A successful exploit could lead to spoofing trusted hosts, extracting sensitive information, or altering API requests. While no public exploit code or active exploitation is reported, the vulnerability has garnered some community discussion and media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:cisco:email_security_appliance:-:*:*:*:*:*:*:* | ||
< 12.5.3-035CPE matchmatch criteria | cpe:2.3:o:cisco:asyncos:*:*:*:*:*:*:*:* | ||
>= 13.0, < 13.0.0-030CPE matchmatch criteria | cpe:2.3:o:cisco:asyncos:*:*:*:*:*:*:*:* | ||
>= 13.5, < 13.5.3-010CPE matchmatch criteria | cpe:2.3:o:cisco:asyncos:*:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:cisco:web_security_appliance:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.