VYPR

ACI Multi-Site Orchestrator (MSO)

by Cisco Systems, Inc.

CVEs (2)

  • CVE-2022-20921Aug 25, 2022
    risk 0.00cvss epss 0.01

    A vulnerability in the API implementation of Cisco ACI Multi-Site Orchestrator (MSO) could allow an authenticated, remote attacker to elevate privileges on an affected device. This vulnerability is due to improper authorization on specific APIs. An attacker could exploit this…

  • CVE-2021-1388Feb 24, 2021
    risk 0.00cvss epss 0.14

    A vulnerability in an API endpoint of Cisco ACI Multi-Site Orchestrator (MSO) installed on the Application Services Engine could allow an unauthenticated, remote attacker to bypass authentication on an affected device. The vulnerability is due to improper token validation on a…