CVE-2015-0658
published 2015-03-28CVE-2015-0658: The DHCP implementation in the PowerOn Auto Provisioning (POAP) feature in Cisco NX-OS does not properly restrict the initialization process, which allows…
PriorityP345high7.9CVSS 2.0
AVAACMAuNCCICAC
EPSS
1.08%
61.6th percentile
The DHCP implementation in the PowerOn Auto Provisioning (POAP) feature in Cisco NX-OS does not properly restrict the initialization process, which allows remote attackers to execute arbitrary commands as root by sending crafted response packets on the local network, aka Bug ID CSCur14589.
Affected
68 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
CVSS provenance
nvdv2.07.9HIGHAV:A/AC:M/Au:N/C:C/I:C/A:C
vendor_cisco7.9HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-p8qc-7hcq-6crg: The DHCP implementation in the PowerOn Auto Provisioning (POAP) feature in Cisco NX-OS does not properly restrict the initialization process, which al
ghsa_unreviewed·2022-05-17
CVE-2015-0658 [HIGH] CWE-20 GHSA-p8qc-7hcq-6crg: The DHCP implementation in the PowerOn Auto Provisioning (POAP) feature in Cisco NX-OS does not properly restrict the initialization process, which al
The DHCP implementation in the PowerOn Auto Provisioning (POAP) feature in Cisco NX-OS does not properly restrict the initialization process, which allows remote attackers to execute arbitrary commands as root by sending crafted response packets on the local network, aka Bug ID CSCur14589.
Cisco
Cisco NX-OS Software DHCP Options Command Injection Vulnerability
vendor_cisco·2015-03-27·CVSS 7.9
CVE-2015-0658 [HIGH] CWE-20 Cisco NX-OS Software DHCP Options Command Injection Vulnerability
Cisco NX-OS Software DHCP Options Command Injection Vulnerability
A vulnerability in DHCP code used with PowerOn Auto Provisioning (POAP) of Cisco NX-OS could allow an unauthenticated, adjacent attacker to inject arbitrary commands into the Cisco NX-OS device.
The vulnerability is due to insufficient input validation of the DHCP options returned as a result of POAP. An attacker could exploit this vulnerability by responding to the initial DHCP request initiated as part of POAP with crafted DHCP packets. An exploit could allow the attacker to execute arbitrary commands in the security context of the root user. The attack can occur during the POAP initialization process.
Cisco has confirmed the vulnerability and released software updates.
To exploit this vulnerability, an attacker must
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-03-28
Published