CVE-2015-6308
published 2015-10-02CVE-2015-6308: Cisco NX-OS 6.0(2)U6(0.46) on N3K devices allows remote authenticated users to cause a denial of service (temporary SNMP outage) via an SNMP request for an OID…
PriorityP418medium4CVSS 2.0
AVNACLAuSCNINAP
EPSS
1.59%
73.1th percentile
Cisco NX-OS 6.0(2)U6(0.46) on N3K devices allows remote authenticated users to cause a denial of service (temporary SNMP outage) via an SNMP request for an OID that does not exist, aka Bug ID CSCuw36684.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | nx-os | — | — |
CVSS provenance
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:N/A:P
vendor_cisco4.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Nexus 3000 Series Switches SNMP Non-Existent OID Denial of Service Vulnerability
vendor_cisco·2015-09-30·CVSS 4.0
CVE-2015-6308 [MEDIUM] CWE-399 Cisco Nexus 3000 Series Switches SNMP Non-Existent OID Denial of Service Vulnerability
Cisco Nexus 3000 Series Switches SNMP Non-Existent OID Denial of Service Vulnerability
A vulnerability in the Simple Network Management Protocol (SNMP) interface of the Nexus 3000 (N3K) Series Switch could allow an authenticated, remote attacker to cause a partial denial of
service (DoS) condition to the SNMP service running on the device.
The vulnerability is due to improper handling of an SNMP request with a non-existent Object Identifier (OID). An attacker could exploit this vulnerability by sending a crafted SNMP request to the
affected device. An exploit could allow the attacker to cause a partial DoS condition of the SNMP interface where SNMP requests with legitimately formatted OIDs will time out. The DoS condition does clear and SNMP requests will start to be processed normally a
GHSA
GHSA-x56f-xphh-4cf6: Cisco NX-OS 6
ghsa_unreviewed·2022-05-17
CVE-2015-6308 [MEDIUM] GHSA-x56f-xphh-4cf6: Cisco NX-OS 6
Cisco NX-OS 6.0(2)U6(0.46) on N3K devices allows remote authenticated users to cause a denial of service (temporary SNMP outage) via an SNMP request for an OID that does not exist, aka Bug ID CSCuw36684.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-10-02
Published