Vulnerabilities > Cisco > Nexus 93180Yc FX

DATE CVE VULNERABILITY TITLE RISK
2019-05-15 CVE-2019-1735 Argument Injection or Modification vulnerability in Cisco Nx-Os
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary commands with elevated privileges on the underlying operating system of an affected device.
local
low complexity
cisco CWE-88
7.2
2019-05-03 CVE-2019-1803 Permissions, Privileges, and Access Controls vulnerability in Cisco Nexus 9000 Series Application Centric Infrastructure
A vulnerability in the filesystem management for the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch Software could allow an authenticated, local attacker with administrator rights to gain elevated privileges as the root user on an affected device.
local
low complexity
cisco CWE-264
7.2
2019-05-03 CVE-2019-1592 Improper Input Validation vulnerability in Cisco Nx-Os 14.1(0.90)
A vulnerability in the background operations functionality of Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch Software could allow an authenticated, local attacker to gain elevated privileges as root on an affected device.
local
low complexity
cisco CWE-20
7.2
2019-05-03 CVE-2019-1589 Information Exposure vulnerability in Cisco Nx-Os 8.3(0)Sk(0.39)
A vulnerability in the Trusted Platform Module (TPM) functionality of software for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an unauthenticated, local attacker with physical access to view sensitive information on an affected device.
local
low complexity
cisco CWE-200
2.1
2019-05-03 CVE-2019-1587 Resource Management Errors vulnerability in Cisco Nx-Os 8.3(0)Sk(0.39)
A vulnerability in Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an authenticated, remote attacker to access sensitive information.
network
low complexity
cisco CWE-399
4.0
2019-03-11 CVE-2019-1690 Unspecified vulnerability in Cisco Application Policy Infrastructure Controller
A vulnerability in the management interface of Cisco Application Policy Infrastructure Controller (APIC) software could allow an unauthenticated, adjacent attacker to gain unauthorized access on an affected device.
low complexity
cisco
3.3
2019-03-11 CVE-2019-1613 Command Injection vulnerability in Cisco Nx-Os
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system of an affected device.
local
low complexity
cisco CWE-77
4.6