CVE-2015-6393Cisco Nx-os vulnerability

CWE-3994 documents4 sources
Severity
7.5HIGHNVD
EPSS
1.0%
top 23.09%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 6
Latest updateMay 17

Description

Cisco NX-OS 4.1 through 7.3 and 11.0 through 11.2 on Nexus 2000, 3000, 3500, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device crash) via malformed IPv4 DHCP packets to the DHCPv4 relay agent, aka Bug IDs CSCuq39250, CSCus21733, CSCus21739, CSCut76171, and CSCux67182.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

NVDcisco/nx-os104 versions+103

🔴Vulnerability Details

2
GHSA
GHSA-rvx7-fx4g-cj44: Cisco NX-OS 42022-05-17
CVEList
CVE-2015-6393: Cisco NX-OS 42016-10-06

📋Vendor Advisories

1
Cisco
Cisco NX-OS Software Malformed DHCPv4 Packet Denial of Service Vulnerability2016-10-05
CVE-2015-6393 — Cisco Nx-os vulnerability | cvebase