VendorsCisconexus_7000any version
Vulnerabilities

Cisco Nexus 7000 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

95CVEs
CVE-2012-3051
Cisco NX-OS 5.2 and 6.1 on Nexus 7000 series switches allows remote attackers to cause a denial of service (process crash or packet loss) via a large number of ARP packets, aka Bug ID CSCtr44822.
Published 2012-09-16 · Modified
6.1EPSS 0.007
CVE-2017-3804
A vulnerability in Intermediate System-to-Intermediate System (IS-IS) protocol packet processing of Cisco Nexus 5000, 6000, and 7000 Series Switches software could allow an unauthenticated, adjacent attacker to cause a reload of the affected device. Switches in the FabricPath domain crash because of an __inst_001__isis_fabricpath hap reset when processing a crafted link-state packet. More Information: CSCvc45002. Known Affected Releases: 7.1(3)N1(2.1) 7.1(3)N1(3.12) 7.3(2)N1(0.296) 8.0(1)S2. Known Fixed Releases: 6.2(18)S11 7.0(3)I5(1.170) 7.0(3)I5(2) 7.1(4)N1(0.4) 7.1(4)N1(1b) 7.1(5)N1(0.986) 7.1(5)N1(1) 7.2(3)D1(0.8) 7.3(2)N1(0.304) 7.3(2)N1(1) 8.0(0.96)S0 8.0(1) 8.0(1)E1 8.0(1)S4 8.3(0)CV(0.788).
Published 2017-01-26 · Modified
6.1EPSS 0.006
CVE-2021-1229
Cisco NX-OS Software ICMP Version 6 Memory Leak Denial of Service Vulnerability
Published 2021-02-24 · Modified
5.8EPSS 0.014
CVE-2019-1734
Cisco FXOS and NX-OS Software Sensitive File Read Information Disclosure Vulnerability
Published 2019-11-05 · Modified
5.5EPSS 0.003
CVE-2020-10136
IP-in-IP protocol allows a remote, unauthenticated attacker to route arbitrary network traffic
Published 2020-06-02 · Modified
5.3EPSS 0.285
CVE-2020-3170
Cisco NX-OS Software NX-API Denial of Service Vulnerability
Published 2020-02-26 · Modified
5.3EPSS 0.017
CVE-2015-0775
The banner (aka MOTD) implementation in Cisco NX-OS 4.1(2)E1(1f) on Nexus 4000 devices, 5.2(1)SV3(2.1) on Nexus 1000V devices, 6.0(2)N2(2) on Nexus 5000 devices, 6.2(11) on MDS 9000 devices, 6.2(12) on Nexus 7000 devices, 7.0(3) on Nexus 9000 devices, and 7.2(0)ZN(99.67) on Nexus 3000 devices allows remote attackers to cause a denial of service (login process reset) via an unspecified terminal-session request during TELNET session setup, aka Bug IDs CSCuo10554, CSCuu75466, CSCuu75471, CSCuu75484, CSCuu75498, CSCuu77170, and CSCuu77182.
Published 2015-06-12 · Modified
5.0EPSS 0.030
CVE-2013-1122
Cisco NX-OS on the Nexus 7000, when a certain Overlay Transport Virtualization (OTV) configuration is used, allows remote attackers to cause a denial of service (M1-Series module reload) via crafted packets, aka Bug ID CSCud15673.
Published 2013-02-13 · Modified
5.0EPSS 0.021
CVE-2012-6396
Cisco NX-OS on Nexus 7000 series switches does not properly handle certain line-card replacements, which might allow remote authenticated users to cause a denial of service (memory consumption) via a crafted configuration that references interfaces that do not exist on the new card, aka Bug ID CSCud44300.
Published 2013-01-19 · Modified
4.9EPSS 0.009
CVE-2020-3174
Cisco NX-OS Software Anycast Gateway Invalid ARP Vulnerability
Published 2020-02-26 · Modified
4.7EPSS 0.003
CVE-2015-4237
The CLI parser in Cisco NX-OS 4.1(2)E1(1), 6.2(11b), 6.2(12), 7.2(0)ZZ(99.1), 7.2(0)ZZ(99.3), and 9.1(1)SV1(3.1.8) on Nexus devices allows local users to execute arbitrary OS commands via crafted characters in a filename, aka Bug IDs CSCuv08491, CSCuv08443, CSCuv08480, CSCuv08448, CSCuu99291, CSCuv08434, and CSCuv08436.
Published 2015-07-03 · Modified
4.6EPSS 0.004
CVE-2014-0684
Cisco NX-OS 6.2(2) on Nexus 7000 switches allows local users to cause a denial of service via crafted sed input, aka Bug ID CSCui56136.
Published 2014-05-07 · Modified
4.6EPSS 0.003
CVE-2012-4090
The management interface in Cisco NX-OS on Nexus 7000 devices allows remote authenticated users to obtain sensitive configuration-file information by leveraging the network-operator role, aka Bug ID CSCti09089.
Published 2013-10-05 · Modified
4.0EPSS 0.021
CVE-2015-4231
The Python interpreter in Cisco NX-OS 6.2(8a) on Nexus 7000 devices allows local users to bypass intended access restrictions and delete an arbitrary VDC's files by leveraging administrative privileges in one VDC, aka Bug ID CSCur08416.
Published 2015-07-03 · Modified
3.6EPSS 0.004
CVE-2020-3504
Cisco UCS Manager Software Local Management CLI Denial of Service Vulnerability
Published 2020-08-27 · Modified
3.3EPSS 0.003
← Prev3 / 3