7.1
CVE-2023-20168
- EPSS 0.11%
- Veröffentlicht 23.08.2023 19:15:07
- Zuletzt bearbeitet 21.11.2024 07:40:43
- Quelle psirt@cisco.com
- Teams Watchlist Login
- Unerledigt Login
A vulnerability in TACACS+ and RADIUS remote authentication for Cisco NX-OS Software could allow an unauthenticated, local attacker to cause an affected device to unexpectedly reload. This vulnerability is due to incorrect input validation when processing an authentication attempt if the directed request option is enabled for TACACS+ or RADIUS. An attacker could exploit this vulnerability by entering a crafted string at the login prompt of an affected device. A successful exploit could allow the attacker to cause the affected device to unexpectedly reload, resulting in a denial of service (DoS) condition.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Nx-os Version9.3(11)
Cisco ≫ Nexus 3048 Version-
Cisco ≫ Nexus 31108pc-v Version-
Cisco ≫ Nexus 31108tc-v Version-
Cisco ≫ Nexus 31128pq Version-
Cisco ≫ Nexus 3132c-z Version-
Cisco ≫ Nexus 3132q-v Version-
Cisco ≫ Nexus 3132q-xl Version-
Cisco ≫ Nexus 3164q Version-
Cisco ≫ Nexus 3172pq Version-
Cisco ≫ Nexus 3172pq-xl Version-
Cisco ≫ Nexus 3172tq Version-
Cisco ≫ Nexus 3172tq-32t Version-
Cisco ≫ Nexus 3172tq-xl Version-
Cisco ≫ Nexus 3232 Version-
Cisco ≫ Nexus 3264c-e Version-
Cisco ≫ Nexus 3264q Version-
Cisco ≫ Nexus 3408-s Version-
Cisco ≫ Nexus 34180yc Version-
Cisco ≫ Nexus 34200yc-sm Version-
Cisco ≫ Nexus 3432d-s Version-
Cisco ≫ Nexus 3464c Version-
Cisco ≫ Nexus 3524 Version-
Cisco ≫ Nexus 3524-x Version-
Cisco ≫ Nexus 3524-xl Version-
Cisco ≫ Nexus 3548 Version-
Cisco ≫ Nexus 3548-x Version-
Cisco ≫ Nexus 3548-xl Version-
Cisco ≫ Nexus 36180yc-r Version-
Cisco ≫ Nexus 9232e Version-
Cisco ≫ Nexus 92348gc-x Version-
Cisco ≫ Nexus 9408 Version-
Cisco ≫ Nexus 9504 Version-
Cisco ≫ Nexus 9508 Version-
Cisco ≫ Nexus 9516 Version-
Cisco ≫ Nexus 31108pc-v Version-
Cisco ≫ Nexus 31108tc-v Version-
Cisco ≫ Nexus 31128pq Version-
Cisco ≫ Nexus 3132c-z Version-
Cisco ≫ Nexus 3132q-v Version-
Cisco ≫ Nexus 3132q-xl Version-
Cisco ≫ Nexus 3164q Version-
Cisco ≫ Nexus 3172pq Version-
Cisco ≫ Nexus 3172pq-xl Version-
Cisco ≫ Nexus 3172tq Version-
Cisco ≫ Nexus 3172tq-32t Version-
Cisco ≫ Nexus 3172tq-xl Version-
Cisco ≫ Nexus 3232 Version-
Cisco ≫ Nexus 3264c-e Version-
Cisco ≫ Nexus 3264q Version-
Cisco ≫ Nexus 3408-s Version-
Cisco ≫ Nexus 34180yc Version-
Cisco ≫ Nexus 34200yc-sm Version-
Cisco ≫ Nexus 3432d-s Version-
Cisco ≫ Nexus 3464c Version-
Cisco ≫ Nexus 3524 Version-
Cisco ≫ Nexus 3524-x Version-
Cisco ≫ Nexus 3524-xl Version-
Cisco ≫ Nexus 3548 Version-
Cisco ≫ Nexus 3548-x Version-
Cisco ≫ Nexus 3548-xl Version-
Cisco ≫ Nexus 36180yc-r Version-
Cisco ≫ Nexus 9232e Version-
Cisco ≫ Nexus 92348gc-x Version-
Cisco ≫ Nexus 9408 Version-
Cisco ≫ Nexus 9504 Version-
Cisco ≫ Nexus 9508 Version-
Cisco ≫ Nexus 9516 Version-
Cisco ≫ Nx-os Version10.2(5)
Cisco ≫ Nexus 3048 Version-
Cisco ≫ Nexus 31108pc-v Version-
Cisco ≫ Nexus 31108tc-v Version-
Cisco ≫ Nexus 31128pq Version-
Cisco ≫ Nexus 3132c-z Version-
Cisco ≫ Nexus 3132q-v Version-
Cisco ≫ Nexus 3132q-xl Version-
Cisco ≫ Nexus 3164q Version-
Cisco ≫ Nexus 3172pq Version-
Cisco ≫ Nexus 3172pq-xl Version-
Cisco ≫ Nexus 3172tq Version-
Cisco ≫ Nexus 3172tq-32t Version-
Cisco ≫ Nexus 3172tq-xl Version-
Cisco ≫ Nexus 3232 Version-
Cisco ≫ Nexus 3264c-e Version-
Cisco ≫ Nexus 3264q Version-
Cisco ≫ Nexus 3408-s Version-
Cisco ≫ Nexus 34180yc Version-
Cisco ≫ Nexus 34200yc-sm Version-
Cisco ≫ Nexus 3432d-s Version-
Cisco ≫ Nexus 3464c Version-
Cisco ≫ Nexus 3524 Version-
Cisco ≫ Nexus 3524-x Version-
Cisco ≫ Nexus 3524-xl Version-
Cisco ≫ Nexus 3548 Version-
Cisco ≫ Nexus 3548-x Version-
Cisco ≫ Nexus 3548-xl Version-
Cisco ≫ Nexus 36180yc-r Version-
Cisco ≫ Nexus 9232e Version-
Cisco ≫ Nexus 92348gc-x Version-
Cisco ≫ Nexus 9408 Version-
Cisco ≫ Nexus 9504 Version-
Cisco ≫ Nexus 9508 Version-
Cisco ≫ Nexus 9516 Version-
Cisco ≫ Nexus 31108pc-v Version-
Cisco ≫ Nexus 31108tc-v Version-
Cisco ≫ Nexus 31128pq Version-
Cisco ≫ Nexus 3132c-z Version-
Cisco ≫ Nexus 3132q-v Version-
Cisco ≫ Nexus 3132q-xl Version-
Cisco ≫ Nexus 3164q Version-
Cisco ≫ Nexus 3172pq Version-
Cisco ≫ Nexus 3172pq-xl Version-
Cisco ≫ Nexus 3172tq Version-
Cisco ≫ Nexus 3172tq-32t Version-
Cisco ≫ Nexus 3172tq-xl Version-
Cisco ≫ Nexus 3232 Version-
Cisco ≫ Nexus 3264c-e Version-
Cisco ≫ Nexus 3264q Version-
Cisco ≫ Nexus 3408-s Version-
Cisco ≫ Nexus 34180yc Version-
Cisco ≫ Nexus 34200yc-sm Version-
Cisco ≫ Nexus 3432d-s Version-
Cisco ≫ Nexus 3464c Version-
Cisco ≫ Nexus 3524 Version-
Cisco ≫ Nexus 3524-x Version-
Cisco ≫ Nexus 3524-xl Version-
Cisco ≫ Nexus 3548 Version-
Cisco ≫ Nexus 3548-x Version-
Cisco ≫ Nexus 3548-xl Version-
Cisco ≫ Nexus 36180yc-r Version-
Cisco ≫ Nexus 9232e Version-
Cisco ≫ Nexus 92348gc-x Version-
Cisco ≫ Nexus 9408 Version-
Cisco ≫ Nexus 9504 Version-
Cisco ≫ Nexus 9508 Version-
Cisco ≫ Nexus 9516 Version-
Cisco ≫ Nx-os Version-
Cisco ≫ Mds 9000 Version-
Cisco ≫ Mds 9100 Version-
Cisco ≫ Mds 9132t Version-
Cisco ≫ Mds 9134 Version-
Cisco ≫ Mds 9140 Version-
Cisco ≫ Mds 9148 Version-
Cisco ≫ Mds 9148s Version-
Cisco ≫ Mds 9148t Version-
Cisco ≫ Mds 9200 Version-
Cisco ≫ Mds 9216 Version-
Cisco ≫ Mds 9216a Version-
Cisco ≫ Mds 9216i Version-
Cisco ≫ Mds 9222i Version-
Cisco ≫ Mds 9250i Version-
Cisco ≫ Mds 9396s Version-
Cisco ≫ Mds 9396t Version-
Cisco ≫ Mds 9500 Version-
Cisco ≫ Mds 9506 Version-
Cisco ≫ Mds 9509 Version-
Cisco ≫ Mds 9513 Version-
Cisco ≫ Mds 9700 Version-
Cisco ≫ Mds 9706 Version-
Cisco ≫ Mds 9710 Version-
Cisco ≫ Mds 9718 Version-
Cisco ≫ Nexus 1000 Virtual Edge Version- SwPlatformvmware_vsphere
Cisco ≫ Nexus 1000v Version- SwPlatformmicrosoft_hyper-v
Cisco ≫ Nexus 1000v Version- SwPlatformvmware_vsphere
Cisco ≫ Nexus 5500 Version-
Cisco ≫ Nexus 5548p Version-
Cisco ≫ Nexus 5548up Version-
Cisco ≫ Nexus 5596t Version-
Cisco ≫ Nexus 5596up Version-
Cisco ≫ Nexus 5600 Version-
Cisco ≫ Nexus 56128p Version-
Cisco ≫ Nexus 5624q Version-
Cisco ≫ Nexus 5648q Version-
Cisco ≫ Nexus 5672up Version-
Cisco ≫ Nexus 5672up-16g Version-
Cisco ≫ Nexus 5696q Version-
Cisco ≫ Nexus 6000 Version-
Cisco ≫ Nexus 6001 Version-
Cisco ≫ Nexus 6001p Version-
Cisco ≫ Nexus 6001t Version-
Cisco ≫ Nexus 6004 Version-
Cisco ≫ Nexus 6004x Version-
Cisco ≫ Nexus 7000 Version-
Cisco ≫ Nexus 7004 Version-
Cisco ≫ Nexus 7009 Version-
Cisco ≫ Nexus 7010 Version-
Cisco ≫ Nexus 7018 Version-
Cisco ≫ Mds 9100 Version-
Cisco ≫ Mds 9132t Version-
Cisco ≫ Mds 9134 Version-
Cisco ≫ Mds 9140 Version-
Cisco ≫ Mds 9148 Version-
Cisco ≫ Mds 9148s Version-
Cisco ≫ Mds 9148t Version-
Cisco ≫ Mds 9200 Version-
Cisco ≫ Mds 9216 Version-
Cisco ≫ Mds 9216a Version-
Cisco ≫ Mds 9216i Version-
Cisco ≫ Mds 9222i Version-
Cisco ≫ Mds 9250i Version-
Cisco ≫ Mds 9396s Version-
Cisco ≫ Mds 9396t Version-
Cisco ≫ Mds 9500 Version-
Cisco ≫ Mds 9506 Version-
Cisco ≫ Mds 9509 Version-
Cisco ≫ Mds 9513 Version-
Cisco ≫ Mds 9700 Version-
Cisco ≫ Mds 9706 Version-
Cisco ≫ Mds 9710 Version-
Cisco ≫ Mds 9718 Version-
Cisco ≫ Nexus 1000 Virtual Edge Version- SwPlatformvmware_vsphere
Cisco ≫ Nexus 1000v Version- SwPlatformmicrosoft_hyper-v
Cisco ≫ Nexus 1000v Version- SwPlatformvmware_vsphere
Cisco ≫ Nexus 5500 Version-
Cisco ≫ Nexus 5548p Version-
Cisco ≫ Nexus 5548up Version-
Cisco ≫ Nexus 5596t Version-
Cisco ≫ Nexus 5596up Version-
Cisco ≫ Nexus 5600 Version-
Cisco ≫ Nexus 56128p Version-
Cisco ≫ Nexus 5624q Version-
Cisco ≫ Nexus 5648q Version-
Cisco ≫ Nexus 5672up Version-
Cisco ≫ Nexus 5672up-16g Version-
Cisco ≫ Nexus 5696q Version-
Cisco ≫ Nexus 6000 Version-
Cisco ≫ Nexus 6001 Version-
Cisco ≫ Nexus 6001p Version-
Cisco ≫ Nexus 6001t Version-
Cisco ≫ Nexus 6004 Version-
Cisco ≫ Nexus 6004x Version-
Cisco ≫ Nexus 7000 Version-
Cisco ≫ Nexus 7004 Version-
Cisco ≫ Nexus 7009 Version-
Cisco ≫ Nexus 7010 Version-
Cisco ≫ Nexus 7018 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.11% | 0.259 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 6.5 | 2 | 4 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
|
psirt@cisco.com | 7.1 | 2.5 | 4 |
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
|
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.