Skip to main content

Vendor/product archive

cisco / nx-os CVEs

Beta · best-effort

271 CVEs tagged to cisco / nx-os8 Critical, 109 High, 152 Medium, 2 Low, 0 Unrated.

CVE-2013-6975

Published May 20, 2014

Directory traversal vulnerability in the command-line interface in Cisco NX-OS 6.2(2a) and earlier allows local users to read arbitrary files via unspecified input, aka Bug ID CSC…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0677

Published Jan 22, 2014

The Label Distribution Protocol (LDP) functionality in Cisco NX-OS allows remote attackers to cause a denial of service (temporary LDP session outage) via LDP discovery traffic co…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0676

Published Jan 22, 2014

Cisco NX-OS allows local users to bypass intended TACACS+ command restrictions via a series of multiple commands, aka Bug ID CSCum47367.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6982

Published Jan 8, 2014

The BGP implementation in Cisco NX-OS 6.2(2a) and earlier does not properly handle the interaction of UPDATE messages with IPv6, VPNv4, and VPNv6 labeled unicast-address families,…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4135

Published Dec 21, 2013

Directory traversal vulnerability in filesys in Cisco NX-OS 6.1(2) and earlier allows local users to access arbitrary files via crafted command-line arguments during a delete acti…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4131

Published Dec 21, 2013

Directory traversal vulnerability in tar in Cisco NX-OS allows local users to access arbitrary files via crafted command-line arguments, aka Bug IDs CSCty07157, CSCty07159, CSCty0…

CVSS 4.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6683

Published Nov 13, 2013

The IPv6 implementation in Cisco NX-OS does not properly handle neighbor-table adjacencies, which allows remote attackers to cause a denial of service (NS processing outage) via a…

CVSS 6.1 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-5566

Published Nov 8, 2013

Cisco NX-OS 5.0 and earlier on MDS 9000 devices allows remote attackers to cause a denial of service (supervisor CPU consumption) via Authentication Header (AH) authentication in…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4121

Published Oct 14, 2013

Cisco NX-OS allows local users to gain privileges, and read or modify arbitrary files, via the sed (1) r and (2) w commands, aka Bug IDs CSCts56559, CSCts56565, CSCts56570, and CS…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4099

Published Oct 14, 2013

The BGP implementation in Cisco NX-OS does not properly filter AS paths, which allows remote attackers to cause a denial of service (BGP service reset and resync) via a malformed…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4097

Published Oct 14, 2013

The BGP implementation in Cisco NX-OS does not properly filter segment types in AS paths, which allows remote attackers to cause a denial of service (BGP service reset) via a malf…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4077

Published Oct 14, 2013

Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via the sed e option, aka Bug IDs CSCtf25457 and CSCtf27651.

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4076

Published Oct 14, 2013

Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via shell metacharacters in a command that calls the system library function, aka Bug IDs CSCtf235…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4141

Published Oct 5, 2013

Directory traversal vulnerability in the CLI parser in Cisco NX-OS allows local users to create arbitrary script files via a relative pathname in the "file name" parameter, aka Bu…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4122

Published Oct 5, 2013

The CLI parser in Cisco NX-OS allows local users to bypass intended access restrictions, and overwrite or create arbitrary files, via shell output redirection, aka Bug IDs CSCts56…

CVSS 6.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4098

Published Oct 5, 2013

The BGP implementation in Cisco NX-OS does not properly filter AS paths, which allows remote attackers to cause a denial of service (BGP service reset and resync) via a malformed…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4091

Published Oct 5, 2013

The RIP service engine in Cisco NX-OS allows remote attackers to cause a denial of service (engine restart) via a malformed (1) RIPv4 or (2) RIPv6 message, aka Bug ID CSCtj73415.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2012-4075

Published Oct 5, 2013

Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via shell metacharacters in unspecified command parameters, aka Bug IDs CSCtf19827 and CSCtf27788.

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2013-1121

Published Sep 19, 2013

The regex engine in the BGP implementation in Cisco NX-OS, when a complex regular expression is configured for inbound routes, allows remote attackers to cause a denial of service…

CVSS 5.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-5496

Published Sep 16, 2013

Open Network Environment Platform (ONEP) in Cisco NX-OS allows remote authenticated users to cause a denial of service (network-element reload) via a crafted packet, aka Bug ID CS…

CVSS 6.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-3400

Published Jul 10, 2013

The license-installation module in Cisco NX-OS on Nexus 1000V devices allows local users to execute arbitrary commands via crafted "install license" arguments, aka Bug ID CSCuh308…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort
Showing 226-250 of 271 CVEsPage 10 of 11