Cisco NX-OS Software是美国思科(Cisco)公司的一套交换机使用的数据中心级操作系统软件。 Cisco NX-OS Software中的文件系统权限存在权限许可和访问控制漏洞,该漏洞源于程序错误地实现了文件系统权限。本地攻击者可利用该漏洞访问敏感信息,进而将权限提升至管理员权限。以下产品和版本受到影响:Cisco Nexus 3000 Series Switches 7.0(3)I7(4)之前版本;Nexus 3500 Platform Switches 7.0(3)I7(4)之前版本
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Nexus 3000 Series Switches | unspecified ~ 7.0(3)I7(4) | - |
|
| Cisco | Nexus 3500 Platform Switches | unspecified ~ 7.0(3)I7(4) | - |
|
| Cisco | Nexus 3600 Platform Switches | unspecified ~ 7.0(3)F3(5) | - |
|
| Cisco | Nexus 9000 Series Switches-Standalone | unspecified ~ 7.0(3)I7(4) | - |
|
| Cisco | Nexus 9500 R-Series Line Cards and Fabric Modules | unspecified ~ 7.0(3)F3(5) | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-1605 | Cisco NX-OS Software NX-API Arbitrary Code Execution Vulnerability | |
| CVE-2019-1606 | Cisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1606) | |
| CVE-2019-1607 | Cisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1607) | |
| CVE-2019-1608 | Cisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1608) | |
| CVE-2019-1609 | Cisco NX-OS Software CLI Command Injection Vulnerability (CVE-2019-1609) | |
| CVE-2019-1603 | Cisco NX-OS Software Privilege Escalation Vulnerability | |
| CVE-2019-1604 | Cisco NX-OS Software Privilege Escalation Vulnerability | |
| CVE-2019-1601 | Cisco NX-OS Software Unauthorized Filesystem Access Vulnerability |
No comments yet