CVE Feed

    Dashboard / CVE / CVE-2022-20821

    CVE-2022-20821

    A vulnerability in the health check RPM of Cisco IOS XR Software could allow an unauthenticated, remote attacker to access the Redis instance that is running within the NOSi container. This vulnerability exists because the health check RPM opens TCP port 6379 by default upon activation. An attacker could exploit this vulnerability by connecting to the Redis instance on the open port. A successful exploit could allow the attacker to write to the Redis in-memory database, write arbitrary files to the container filesystem, and retrieve information about the Redis database. Given the configuration of the sandboxed container that the Redis instance runs in, a remote attacker would be unable to execute remote code or abuse the integrity of the Cisco IOS XR Software host system.

    Published:May 26, 2022
    Last Modified:Oct 28, 2025
    EPS:May 26, 2022
    EPSS Score:0.13224
    CVSS Score:6.5

    CISA Notification

    Description

    A vulnerability in the health check RPM of Cisco IOS XR Software could allow an unauthenticated, remote attacker to access the Redis instance that is running within the NOSi container. This vulnerability exists because the health check RPM opens TCP port 6379 by default upon activation. An attacker could exploit this vulnerability by connecting to the Redis instance on the open port. A successful exploit could allow the attacker to write to the Redis in-memory database, write arbitrary files to the container filesystem, and retrieve information about the Redis database. Given the configuration of the sandboxed container that the Redis instance runs in, a remote attacker would be unable to execute remote code or abuse the integrity of the Cisco IOS XR Software host system.

    Required Action:

    Apply updates per vendor instructions.

    Notes:

    No extra notes provided.

    Due Date
    Jun 13, 2022
    1551 days ago
    Alert Date
    May 23, 2022
    1572 days ago

    Affected Products

    Vendor
    Cisco
    Product
    8201
    Vendor
    Cisco
    Product
    8202
    Vendor
    Cisco
    Product
    8208
    Vendor
    Cisco
    Product
    8212
    Vendor
    Cisco
    Product
    8218
    Vendor
    Cisco
    Product
    Ios Xr
    Vendor
    Cisco
    Product
    Ncs-55a1-24h
    Vendor
    Cisco
    Product
    Ncs-55a1-24q6h-s
    Vendor
    Cisco
    Product
    Ncs-55a1-36h-s
    Vendor
    Cisco
    Product
    Ncs-55a1-36h-se
    Vendor
    Cisco
    Product
    Ncs-55a1-36h-se-s
    Vendor
    Cisco
    Product
    Ncs-55a2-mod-hd-s
    Vendor
    Cisco
    Product
    Ncs-55a2-mod-hx-s
    Vendor
    Cisco
    Product
    Ncs-55a2-mod-s
    Vendor
    Cisco
    Product
    Ncs-55a2-mod-se-h-s
    Vendor
    Cisco
    Product
    Ncs-55a2-mod-se-s
    Vendor
    Cisco
    Product
    Ncs 1001
    Vendor
    Cisco
    Product
    Ncs 1002
    Vendor
    Cisco
    Product
    Ncs 1004
    Vendor
    Cisco
    Product
    Ncs 5001
    Vendor
    Cisco
    Product
    Ncs 5002
    Vendor
    Cisco
    Product
    Ncs 5501-se
    Vendor
    Cisco
    Product
    Ncs 5502-se
    Vendor
    Cisco
    Product
    Ncs 5504
    Vendor
    Cisco
    Product
    Ncs 5508
    Vendor
    Cisco
    Product
    Ncs 5516
    Vendor
    Cisco
    Product
    Ncs 55a1
    Vendor
    Cisco
    Product
    Ncs 55a2

    Exploits

    No exploit reference

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High