Vulnerabilities > Cisco > NX OS > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-08-30 CVE-2019-1969 Improper Input Validation vulnerability in Cisco Nx-Os
A vulnerability in the implementation of the Simple Network Management Protocol (SNMP) Access Control List (ACL) feature of Cisco NX-OS Software could allow an unauthenticated, remote attacker to perform SNMP polling of an affected device, even if it is configured to deny SNMP traffic.
network
low complexity
cisco CWE-20
5.3
2019-08-28 CVE-2019-1963 Improper Input Validation vulnerability in Cisco Nx-Os
A vulnerability in the Simple Network Management Protocol (SNMP) input packet processor of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, remote attacker to cause the SNMP application on an affected device to restart unexpectedly.
network
low complexity
cisco CWE-20
6.5
2019-05-16 CVE-2019-1780 Argument Injection or Modification vulnerability in Cisco Nx-Os
A vulnerability in the CLI of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker with administrator credentials to execute arbitrary commands on the underlying operating system of an affected device with elevated privileges.
local
low complexity
cisco CWE-88
6.7
2019-05-16 CVE-2019-1768 OS Command Injection vulnerability in Cisco Nx-Os
A vulnerability in the implementation of a specific CLI command for Cisco NX-OS Software could allow an authenticated, local attacker with administrator credentials to cause a buffer overflow condition or perform command injection.
local
low complexity
cisco CWE-78
6.7
2019-05-15 CVE-2019-1813 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1812 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1811 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1810 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature used in an NX-OS CLI command in Cisco Nexus 3000 Series and 9000 Series Switches could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1809 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software patch on an affected device.
local
low complexity
cisco CWE-347
6.7
2019-05-15 CVE-2019-1808 Improper Verification of Cryptographic Signature vulnerability in Cisco Nx-Os
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software patch on an affected device.
local
low complexity
cisco CWE-347
4.4