Vulnerabilities > Cisco > High

DATE CVE VULNERABILITY TITLE RISK
2019-03-08 CVE-2019-1604 Incorrect Authorization vulnerability in Cisco Nx-Os
A vulnerability in the user account management interface of Cisco NX-OS Software could allow an authenticated, local attacker to gain elevated privileges on an affected device.
local
low complexity
cisco CWE-863
7.8
2019-03-08 CVE-2019-1603 Incorrect Authorization vulnerability in Cisco Nx-Os
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to escalate lower-level privileges to the administrator level.
local
low complexity
cisco CWE-863
7.8
2019-03-08 CVE-2019-1602 Unspecified vulnerability in Cisco Nx-Os
A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated, local attacker to access sensitive data that could be used to elevate their privileges to administrator.
local
low complexity
cisco
7.8
2019-03-08 CVE-2019-1601 Incorrect Permission Assignment for Critical Resource vulnerability in Cisco Nx-Os
A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated, local attacker to gain read and write access to a critical configuration file.
local
low complexity
cisco CWE-732
7.8
2019-03-07 CVE-2019-1599 Allocation of Resources Without Limits or Throttling vulnerability in Cisco Nx-Os
A vulnerability in the network stack of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on the affected device.
network
low complexity
cisco CWE-770
8.6
2019-03-07 CVE-2019-1598 Improper Input Validation vulnerability in Cisco Firepower Extensible Operating System and Nx-Os
Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-20
7.5
2019-03-07 CVE-2019-1597 Improper Input Validation vulnerability in Cisco Firepower Extensible Operating System and Nx-Os
Multiple vulnerabilities in the implementation of the Lightweight Directory Access Protocol (LDAP) feature in Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause an affected device to reload, resulting in a denial of service (DoS) condition.
network
low complexity
cisco CWE-20
7.5
2019-03-07 CVE-2019-1596 Incorrect Permission Assignment for Critical Resource vulnerability in Cisco Nx-Os
A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker to escalate their privilege level to root.
local
low complexity
cisco CWE-732
7.8
2019-03-06 CVE-2019-1594 Improper Input Validation vulnerability in Cisco Nx-Os
A vulnerability in the 802.1X implementation for Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device.
low complexity
cisco CWE-20
7.4
2019-03-06 CVE-2019-1593 Unspecified vulnerability in Cisco Nx-Os
A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker to escalate their privilege level by executing commands authorized to other user roles.
local
low complexity
cisco
7.8