CVE-2020-3504Improper Control of a Resource Through its Lifetime in Cisco Nx-os

Severity
3.3LOWNVD
EPSS
0.2%
top 62.04%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 27
Latest updateMay 24

Description

A vulnerability in the local management (local-mgmt) CLI of Cisco UCS Manager Software could allow an authenticated, local attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper handling of CLI command parameters. An attacker could exploit this vulnerability by executing specific commands on the local-mgmt CLI on an affected device. A successful exploit could allow the attacker to cause internal system processes to fail to terminate prop

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:LExploitability: 1.8 | Impact: 1.4

Affected Packages2 packages

NVDcisco/nx-os4.04.0\(4i\)

🔴Vulnerability Details

2
GHSA
GHSA-pvcf-6vj4-mpr5: A vulnerability in the local management (local-mgmt) CLI of Cisco UCS Manager Software could allow an authenticated, local attacker to cause a denial2022-05-24
CVEList
Cisco UCS Manager Software Local Management CLI Denial of Service Vulnerability2020-08-27

📋Vendor Advisories

1
Cisco
Cisco UCS Manager Software Local Management CLI Denial of Service Vulnerability2020-08-26
CVE-2020-3504 — Cisco Nx-os vulnerability | cvebase