Cisco Nexus 9000 Series Switches-Standalone vulnerabilities
5 known vulnerabilities affecting cisco/nexus_9000_series_switches-standalone.
Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2019-1604HIGHCVSS 7.8≥ unspecified, < 7.0(3)I7(4)2019-03-08
CVE-2019-1604 [HIGH] CWE-285 CVE-2019-1604: A vulnerability in the user account management interface of Cisco NX-OS Software could allow an auth
A vulnerability in the user account management interface of Cisco NX-OS Software could allow an authenticated, local attacker to gain elevated privileges on an affected device. The vulnerability is due to an incorrect authorization check of user accounts and their associated Group ID (GID). An attacker could exploit this vulnerability by taking advantag
cvelistv5nvd
CVE-2019-1602HIGHCVSS 7.8≥ unspecified, < 7.0(3)I7(4)2019-03-08
CVE-2019-1602 [HIGH] CWE-264 CVE-2019-1602: A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated,
A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated, local attacker to access sensitive data that could be used to elevate their privileges to administrator. The vulnerability is due to improper implementation of filesystem permissions. An attacker could exploit this vulnerability by logging in to the CLI of
cvelistv5nvd
CVE-2019-1603HIGHCVSS 7.8≥ unspecified, < 7.0(3)I7(4)2019-03-08
CVE-2019-1603 [HIGH] CWE-285 CVE-2019-1603: A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to e
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to escalate lower-level privileges to the administrator level. The vulnerability is due to insufficient authorization enforcement. An attacker could exploit this vulnerability by authenticating to the targeted device and executing commands that could lead to
cvelistv5nvd
CVE-2019-1601HIGHCVSS 7.8≥ unspecified, < 7.0(3)I4(9)≥ unspecified, < 7.0(3)I7(4)2019-03-08
CVE-2019-1601 [HIGH] CWE-284 CVE-2019-1601: A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated,
A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated, local attacker to gain read and write access to a critical configuration file. The vulnerability is due to a failure to impose strict filesystem permissions on the targeted device. An attacker could exploit this vulnerability by accessing and modifying res
cvelistv5nvd
CVE-2019-1600MEDIUMCVSS 4.4≥ unspecified, < 7.0(3)I4(9)≥ unspecified, < 7.0(3)I7(4)2019-03-07
CVE-2019-1600 [MEDIUM] CWE-264 CVE-2019-1600: A vulnerability in the file system permissions of Cisco FXOS Software and Cisco NX-OS Software could
A vulnerability in the file system permissions of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to access sensitive information that is stored in the file system of an affected system. The vulnerability is due to improper implementation of file system permissions. An attacker could exploit this vulnerability
cvelistv5nvd