Vulnerabilities > Cisco > NX OS > 15.1.1h

DATE CVE VULNERABILITY TITLE RISK
2023-07-12 CVE-2023-20185 Inadequate Encryption Strength vulnerability in Cisco Nx-Os
A vulnerability in the Cisco ACI Multi-Site CloudSec encryption feature of Cisco Nexus 9000 Series Fabric Switches in ACI mode could allow an unauthenticated, remote attacker to read or modify intersite encrypted traffic. This vulnerability is due to an issue with the implementation of the ciphers that are used by the CloudSec encryption feature on affected switches.
network
high complexity
cisco CWE-326
7.4
2021-08-25 CVE-2021-1586 Insufficient Verification of Data Authenticity vulnerability in Cisco Nx-Os 15.0(2E)/15.1(1H)
A vulnerability in the Multi-Pod or Multi-Site network configurations for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an unauthenticated, remote attacker to unexpectedly restart the device, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-345
8.6