CVE-2021-1498
Cisco HyperFlex HX Data Platform Command Injection Vulnerability
Cisco HyperFlex HX Installer Virtual Machine contains an insufficient input validation vulnerability which could allow an attacker to execute commands on an affected device as the tomcat8 user. Vendor/Product: Cisco HyperFlex HX. Added to CISA KEV 2021-11-03; required action: Apply updates per vendor instructions.