CVE-2015-0775
published 2015-06-12CVE-2015-0775: The banner (aka MOTD) implementation in Cisco NX-OS 4.1(2)E1(1f) on Nexus 4000 devices, 5.2(1)SV3(2.1) on Nexus 1000V devices, 6.0(2)N2(2) on Nexus 5000…
PriorityP428medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.99%
85.9th percentile
The banner (aka MOTD) implementation in Cisco NX-OS 4.1(2)E1(1f) on Nexus 4000 devices, 5.2(1)SV3(2.1) on Nexus 1000V devices, 6.0(2)N2(2) on Nexus 5000 devices, 6.2(11) on MDS 9000 devices, 6.2(12) on Nexus 7000 devices, 7.0(3) on Nexus 9000 devices, and 7.2(0)ZN(99.67) on Nexus 3000 devices allows remote attackers to cause a denial of service (login process reset) via an unspecified terminal-session request during TELNET session setup, aka Bug IDs CSCuo10554, CSCuu75466, CSCuu75471, CSCuu75484, CSCuu75498, CSCuu77170, and CSCuu77182.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | mds_9000_nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
| cisco | nx-os | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_cisco5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-5mfv-779g-c9j3: The banner (aka MOTD) implementation in Cisco NX-OS 4
ghsa_unreviewed·2022-05-17
CVE-2015-0775 [MEDIUM] GHSA-5mfv-779g-c9j3: The banner (aka MOTD) implementation in Cisco NX-OS 4
The banner (aka MOTD) implementation in Cisco NX-OS 4.1(2)E1(1f) on Nexus 4000 devices, 5.2(1)SV3(2.1) on Nexus 1000V devices, 6.0(2)N2(2) on Nexus 5000 devices, 6.2(11) on MDS 9000 devices, 6.2(12) on Nexus 7000 devices, 7.0(3) on Nexus 9000 devices, and 7.2(0)ZN(99.67) on Nexus 3000 devices allows remote attackers to cause a denial of service (login process reset) via an unspecified terminal-session request during TELNET session setup, aka Bug IDs CSCuo10554, CSCuu75466, CSCuu75471, CSCuu75484, CSCuu75498, CSCuu77170, and CSCuu77182.
Cisco
Cisco Nexus and Cisco Multilayer Director Switches MOTD Telnet Login Reset Vulnerability
vendor_cisco·2015-06-10·CVSS 5.0
CVE-2015-0775 [MEDIUM] CWE-399 Cisco Nexus and Cisco Multilayer Director Switches MOTD Telnet Login Reset Vulnerability
Cisco Nexus and Cisco Multilayer Director Switches MOTD Telnet Login Reset Vulnerability
A vulnerability in the Message of the Day (MOTD) or banner functionality of the NX-OS Software could allow an unauthenticated, remote attacker to cause the login process to reset.
The vulnerability is due to the MOTD display handling when a certain type of terminal session is requested via Telnet. An attacker could exploit this vulnerability by repeatedly issuing a Telnet session to the NX-OS device, causing the login process to reset. An exploit could allow the attacker to cause the login process of the NX-OS device to reset repeatedly.
Cisco has confirmed the vulnerability; however, software updates are not available.
To exploit this vulnerability, an attacker would need to start a Telnet sessio
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-06-12
Published