CVE-2019-1726
- EPSS 0.05%
- Veröffentlicht 15.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:11
A vulnerability in the CLI of Cisco NX-OS Software could allow an authenticated, local attacker to access internal services that should be restricted on an affected device, such as the NX-API. The vulnerability is due to insufficient validation of ar...
CVE-2019-1727
- EPSS 0.13%
- Veröffentlicht 15.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:11
A vulnerability in the Python scripting subsystem of Cisco NX-OS Software could allow an authenticated, local attacker to escape the Python parser and issue arbitrary commands to elevate the attacker's privilege level. The vulnerability is due to ins...
CVE-2019-1728
- EPSS 0.11%
- Veröffentlicht 15.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:11
A vulnerability in the Secure Configuration Validation functionality of Cisco FXOS Software and Cisco NX-OS Software could allow an authenticated, local attacker to run arbitrary commands at system boot time with the privileges of root. The vulnerabi...
CVE-2019-1729
- EPSS 0.1%
- Veröffentlicht 15.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:11
A vulnerability in the CLI implementation of a specific command used for image maintenance for Cisco NX-OS Software could allow an authenticated, local attacker to overwrite any file on the file system including system files. These file overwrites by...
CVE-2019-1730
- EPSS 0.05%
- Veröffentlicht 15.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:11
A vulnerability in the Bash shell implementation for Cisco NX-OS Software could allow an authenticated, local attacker to bypass the limited command set of the restricted Guest Shell and execute commands at the privilege level of a network-admin user...
CVE-2019-1731
- EPSS 0.18%
- Veröffentlicht 15.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:12
A vulnerability in the SSH CLI key management functionality of Cisco NX-OS Software could allow an authenticated, local attacker to expose a user's private SSH key to all authenticated users on the targeted device. The attacker must authenticate with...
CVE-2019-1732
- EPSS 0.17%
- Veröffentlicht 15.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:12
A vulnerability in the Remote Package Manager (RPM) subsystem of Cisco NX-OS Software could allow an authenticated, local attacker with administrator credentials to leverage a time-of-check, time-of-use (TOCTOU) race condition to corrupt local variab...
CVE-2019-1733
- EPSS 0.31%
- Veröffentlicht 15.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:12
A vulnerability in the NX API (NX-API) Sandbox interface for Cisco NX-OS Software could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the NX-API Sandbox interface of an affected device. The v...
CVE-2019-1649
- EPSS 0.24%
- Veröffentlicht 13.05.2019 19:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:00
A vulnerability in the logic that handles access control to one of the hardware components in Cisco's proprietary Secure Boot implementation could allow an authenticated, local attacker to write a modified firmware image to the component. This vulner...
CVE-2019-1836
- EPSS 0.2%
- Veröffentlicht 03.05.2019 17:29:01
- Zuletzt bearbeitet 21.11.2024 04:37:30
A vulnerability in the system shell for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an authenticated, local attacker to use symbolic links to overwrite system files. These system files may be s...