CVE-2016-6457

CWE-119Buffer Overflow4 documents4 sources
Severity
6.5MEDIUM
EPSS
0.4%
top 41.75%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 19
Latest updateMay 13

Description

A vulnerability in the Cisco Nexus 9000 Series Platform Leaf Switches for Application Centric Infrastructure (ACI) could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on the affected device. This vulnerability affects Cisco Nexus 9000 Series Leaf Switches (TOR) - ACI Mode and Cisco Application Policy Infrastructure Controller (APIC). More Information: CSCuy93241. Known Affected Releases: 11.2(2x) 11.2(3x) 11.3(1x) 11.3(2x) 12.0(1x). Known Fixed Releases

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 2.8 | Impact: 3.6

Affected Packages3 packages

CVEListV5cisco_nexus_9000_series_platform_leaf_switches_for_application_centric_infrastructure_(aci)_11.2(2x)_through_12.0(1x)Cisco Nexus 9000 Series Platform Leaf Switches for Application Centric Infrastructure (ACI) 11.2(2x) through 12.0(1x)
NVDcisco/nx-os15 versions+14

🔴Vulnerability Details

2
GHSA
GHSA-rcfp-cj8c-h553: A vulnerability in the Cisco Nexus 9000 Series Platform Leaf Switches for Application Centric Infrastructure (ACI) could allow an unauthenticated, adj2022-05-13
CVEList
CVE-2016-6457: A vulnerability in the Cisco Nexus 9000 Series Platform Leaf Switches for Application Centric Infrastructure (ACI) could allow an unauthenticated, adj2016-11-19

📋Vendor Advisories

1
Cisco
Cisco Application Policy Infrastructure Controller Denial of Service Vulnerability2016-11-02
CVE-2016-6457 (MEDIUM CVSS 6.5) | A vulnerability in the Cisco Nexus | cvebase.io