CVE-2014-2200
published 2014-05-26CVE-2014-2200: Cisco NX-OS 5.0 before 5.0(5) on Nexus 7000 devices, when local authentication and multiple VDCs are enabled, allows remote authenticated users to gain…
PriorityP434high7.1CVSS 2.0
AVNACHAuSCCICAC
EPSS
1.86%
77.0th percentile
Cisco NX-OS 5.0 before 5.0(5) on Nexus 7000 devices, when local authentication and multiple VDCs are enabled, allows remote authenticated users to gain privileges within an unintended VDC via an SSH session to a management interface, aka Bug ID CSCti11629.
Affected
31 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
CVSS provenance
nvdv2.07.1HIGHAV:N/AC:H/Au:S/C:C/I:C/A:C
vendor_cisco7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-f9hh-5798-v49v: Cisco NX-OS 5
ghsa_unreviewed·2022-05-17
CVE-2014-2200 [HIGH] GHSA-f9hh-5798-v49v: Cisco NX-OS 5
Cisco NX-OS 5.0 before 5.0(5) on Nexus 7000 devices, when local authentication and multiple VDCs are enabled, allows remote authenticated users to gain privileges within an unintended VDC via an SSH session to a management interface, aka Bug ID CSCti11629.
Cisco
Multiple Vulnerabilities in Cisco NX-OS-Based Products
vendor_cisco·2014-05-21·CVSS 7.8
CVE-2013-1191 [HIGH] CWE-119 Multiple Vulnerabilities in Cisco NX-OS-Based Products
Multiple Vulnerabilities in Cisco NX-OS-Based Products
Cisco Nexus, Cisco Unified Computing System (UCS), and Cisco 1000 Series Connected Grid Routers (CGR) are all based on the Cisco NX-OS operating system. These products are affected by one or more of the following vulnerabilities:
Cisco NX-OS Virtual Device Context SSH Privilege Escalation Vulnerability
Cisco NX-OS Virtual Device Context SSH Key Privilege Escalation Vulnerability
Cisco NX-OS-Based Products Smart Call Home Buffer Overflow Vulnerability
Cisco NX-OS Message Transfer Service Denial of Service Vulnerability
No officially released images are affected
Cisco has released software updates that address these vulnerabilities.
This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center
Cisco
Multiple Vulnerabilities in Cisco NX-OS-Based Products
vendor_cisco
CVE-2014-2200 Multiple Vulnerabilities in Cisco NX-OS-Based Products
CVE-2014-2200: Multiple Vulnerabilities in Cisco NX-OS-Based Products
Cisco Nexus, Cisco Unified Computing System (UCS), and Cisco 1000 Series Connected Grid Routers (CGR) are all based on the Cisco NX-OS operating system. These products are affected by one or more of the following vulnerabilities: Cisco NX-OS Virtual Device Context SSH Privilege Escalation Vulnerability Cisco NX-OS Virtual Device Context SSH Key Privilege Escalation Vulnerability Cisco NX-OS-Based Products Smart Call Home Buffer Overflow Vulnerability Cisco NX-OS Message Transfer Service Denial of Service Vulnerability No officially released images are affected Cisco has released software updates that address these vulnerabilities. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2014-05-26
Published