7.1

CVE-2016-1454

Cisco NX-OS 4.0 through 7.3 and 11.0 through 11.2 on 1000v, 2000, 3000, 3500, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote attackers to cause a denial of service (device reload) by leveraging a peer relationship to send a crafted BGP UPDATE message, aka Bug IDs CSCuq77105 and CSCux11417.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoNx-os Version < 6.0\(2\)u6\(7\)
   CiscoNexus 3016 Version-
   CiscoNexus 3048 Version-
   CiscoNexus 31108pc-v Version-
   CiscoNexus 31108tc-v Version-
   CiscoNexus 31128pq Version-
   CiscoNexus 3132q Version-
   CiscoNexus 3132q-v Version-
   CiscoNexus 3164q Version-
   CiscoNexus 3172 Version-
   CiscoNexus 3232c Version-
   CiscoNexus 3264q Version-
CiscoNx-os Version >= 6.1 < 7.0\(3\)i4\(1\)
   CiscoNexus 3016 Version-
   CiscoNexus 3048 Version-
   CiscoNexus 31108pc-v Version-
   CiscoNexus 31108tc-v Version-
   CiscoNexus 31128pq Version-
   CiscoNexus 3132q Version-
   CiscoNexus 3132q-v Version-
   CiscoNexus 3164q Version-
   CiscoNexus 3172 Version-
   CiscoNexus 3232c Version-
   CiscoNexus 3264q Version-
CiscoNx-os Version < 7.1\(4\)n1\(1\)
   Cisco5548p Version-
   Cisco5548up Version-
   Cisco5596t Version-
   Cisco5596up Version-
   Cisco56128p Version-
   Cisco5624q Version-
   Cisco5648q Version-
   Cisco5672up Version-
   Cisco5672up-16g Version-
   Cisco5696q Version-
   CiscoNexus 6001 Version-
   CiscoNexus 6004 Version-
CiscoNx-os Version >= 7.2 < 7.2\(2\)n1\(1\)
   Cisco5548p Version-
   Cisco5548up Version-
   Cisco5596t Version-
   Cisco5596up Version-
   Cisco56128p Version-
   Cisco5624q Version-
   Cisco5648q Version-
   Cisco5672up Version-
   Cisco5672up-16g Version-
   Cisco5696q Version-
   CiscoNexus 6001 Version-
   CiscoNexus 6004 Version-
CiscoNx-os Version >= 7.3 < 7.3\(0\)n1\(1\)
   Cisco5548p Version-
   Cisco5548up Version-
   Cisco5596t Version-
   Cisco5596up Version-
   Cisco56128p Version-
   Cisco5624q Version-
   Cisco5648q Version-
   Cisco5672up Version-
   Cisco5672up-16g Version-
   Cisco5696q Version-
   CiscoNexus 6001 Version-
   CiscoNexus 6004 Version-
CiscoNx-os Version < 5.2
   CiscoNexus 5010 Version-
   CiscoNexus 5020 Version-
CiscoNx-os Version < 7.2\(2\)d1\(1\)
   CiscoNexus 7000 10-slot Version-
   CiscoNexus 7000 18-slot Version-
   CiscoNexus 7000 4-slot Version-
   CiscoNexus 7000 9-slot Version-
   CiscoNexus 7700 10-slot Version-
   CiscoNexus 7700 18-slot Version-
   CiscoNexus 7700 2-slot Version-
   CiscoNexus 7700 6-slot Version-
CiscoNx-os Version >= 7.3 < 7.3\(1\)d1\(1\)
   CiscoNexus 7000 10-slot Version-
   CiscoNexus 7000 18-slot Version-
   CiscoNexus 7000 4-slot Version-
   CiscoNexus 7000 9-slot Version-
   CiscoNexus 7700 10-slot Version-
   CiscoNexus 7700 18-slot Version-
   CiscoNexus 7700 2-slot Version-
   CiscoNexus 7700 6-slot Version-
CiscoNx-os Version < 5.2\(1\)sv3\(1.15\)
CiscoNx-os Version >= 6.1 < 7.0\(3\)i4\(1\)
   CiscoNexus 92160yc-x Version-
   CiscoNexus 92304qc Version-
   CiscoNexus 9236c Version-
   CiscoNexus 9272q Version-
   CiscoNexus 93108tc-ex Version-
   CiscoNexus 93120tx Version-
   CiscoNexus 93128tx Version-
   CiscoNexus 93180yc-ex Version-
   CiscoNexus 9332pq Version-
   CiscoNexus 9336pq Aci Spine Version-
   CiscoNexus 9372px Version-
   CiscoNexus 9372tx Version-
   CiscoNexus 9396px Version-
   CiscoNexus 9396tx Version-
   CiscoNexus 9504 Version-
   CiscoNexus 9508 Version-
   CiscoNexus 9516 Version-
CiscoNx-os Version >= 11.0 < 11.1\(1j\)
   CiscoNexus 92160yc-x Version-
   CiscoNexus 92304qc Version-
   CiscoNexus 9236c Version-
   CiscoNexus 9272q Version-
   CiscoNexus 93108tc-ex Version-
   CiscoNexus 93120tx Version-
   CiscoNexus 93128tx Version-
   CiscoNexus 93180yc-ex Version-
   CiscoNexus 9332pq Version-
   CiscoNexus 9336pq Aci Spine Version-
   CiscoNexus 9372px Version-
   CiscoNexus 9372tx Version-
   CiscoNexus 9396px Version-
   CiscoNexus 9396tx Version-
   CiscoNexus 9504 Version-
   CiscoNexus 9508 Version-
   CiscoNexus 9516 Version-
CiscoNx-os Version < 6.0\(2\)a8\(1\)
   CiscoNexus 3524 Version-
   CiscoNexus 3548 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.4% 0.786
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvd@nist.gov 7.1 8.6 6.9
AV:N/AC:M/Au:N/C:N/I:N/A:C
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.