VYPR

Aci Multi Site Orchestrator

by Cisco Systems, Inc.

CVEs (2)

  • CVE-2021-1388CriFeb 24, 2021
    risk 0.66cvss 10.0epss 0.14

    A vulnerability in an API endpoint of Cisco ACI Multi-Site Orchestrator (MSO) installed on the Application Services Engine could allow an unauthenticated, remote attacker to bypass authentication on an affected device. The vulnerability is due to improper token validation on a…

  • CVE-2022-20921HigAug 25, 2022
    risk 0.57cvss 8.8epss 0.01

    A vulnerability in the API implementation of Cisco ACI Multi-Site Orchestrator (MSO) could allow an authenticated, remote attacker to elevate privileges on an affected device. This vulnerability is due to improper authorization on specific APIs. An attacker could exploit this…