Vulnerabilities
Vulnerable Software
Cisco:  >> Nx-Os  Security Vulnerabilities
Cisco NX-OS allows local users to gain privileges, and read or modify arbitrary files, via the sed (1) r and (2) w commands, aka Bug IDs CSCts56559, CSCts56565, CSCts56570, and CSCts56574.
CVSS Score
6.8
EPSS Score
0.001
Published
2013-10-14
Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via the sed e option, aka Bug IDs CSCtf25457 and CSCtf27651.
CVSS Score
6.8
EPSS Score
0.001
Published
2013-10-14
The BGP implementation in Cisco NX-OS does not properly filter segment types in AS paths, which allows remote attackers to cause a denial of service (BGP service reset) via a malformed UPDATE message, aka Bug ID CSCtn13043.
CVSS Score
4.3
EPSS Score
0.004
Published
2013-10-14
Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via shell metacharacters in a command that calls the system library function, aka Bug IDs CSCtf23559 and CSCtf27780.
CVSS Score
6.8
EPSS Score
0.001
Published
2013-10-14
Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via shell metacharacters in unspecified command parameters, aka Bug IDs CSCtf19827 and CSCtf27788.
CVSS Score
7.2
EPSS Score
0.002
Published
2013-10-05
The management interface in Cisco NX-OS on Nexus 7000 devices allows remote authenticated users to obtain sensitive configuration-file information by leveraging the network-operator role, aka Bug ID CSCti09089.
CVSS Score
4.0
EPSS Score
0.005
Published
2013-10-05
The RIP service engine in Cisco NX-OS allows remote attackers to cause a denial of service (engine restart) via a malformed (1) RIPv4 or (2) RIPv6 message, aka Bug ID CSCtj73415.
CVSS Score
5.0
EPSS Score
0.011
Published
2013-10-05
The BGP implementation in Cisco NX-OS does not properly filter AS paths, which allows remote attackers to cause a denial of service (BGP service reset and resync) via a malformed UPDATE message, aka Bug ID CSCtn13055.
CVSS Score
5.0
EPSS Score
0.005
Published
2013-10-05
The CLI parser in Cisco NX-OS allows local users to bypass intended access restrictions, and overwrite or create arbitrary files, via shell output redirection, aka Bug IDs CSCts56672 and CSCts56669.
CVSS Score
6.2
EPSS Score
0.001
Published
2013-10-05
Directory traversal vulnerability in the CLI parser in Cisco NX-OS allows local users to create arbitrary script files via a relative pathname in the "file name" parameter, aka Bug IDs CSCua71557 and CSCua71551.
CVSS Score
6.2
EPSS Score
0.002
Published
2013-10-05


Contact Us

Shodan ® - All rights reserved