VendorsCisconexus_9504any version
Vulnerabilities

Cisco Nexus 9504 any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

96CVEs
CVE-2015-4323
Buffer overflow in Cisco NX-OS on Nexus 1000V devices for VMware vSphere 7.3(0)ZN(0.9); Nexus 3000 devices 6.0(2)U5(1.41), 7.0(3)I2(0.373), and 7.3(0)ZN(0.83); Nexus 4000 devices 4.1(2)E1(1b); Nexus 7000 devices 6.2(14)S1; Nexus 9000 devices 7.3(0)ZN(0.9); and MDS 9000 devices 6.2 (13) and 7.1(0)ZN(91.99) and MDS SAN-OS 7.1(0)ZN(91.99) allows remote attackers to cause a denial of service (device outage) via a crafted ARP packet, related to incorrect MTU validation, aka Bug IDs CSCuv71933, CSCuv61341, CSCuv61321, CSCuu78074, CSCut37060, CSCuv61266, CSCuv61351, CSCuv61358, and CSCuv61366.
Published 2015-08-19 · Modified
6.1EPSS 0.010
CVE-2019-1969
Cisco NX-OS Software SNMP Access Control List Configuration Name Bypass Vulnerability
Published 2019-08-29 · Modified
5.8EPSS 0.014
CVE-2021-1591
Cisco Nexus 9500 Series Switches Access Control List Bypass Vulnerability
Published 2021-08-25 · Modified
5.8EPSS 0.010
CVE-2019-1734
Cisco FXOS and NX-OS Software Sensitive File Read Information Disclosure Vulnerability
Published 2019-11-05 · Modified
5.5EPSS 0.003
CVE-2020-10136
IP-in-IP protocol allows a remote, unauthenticated attacker to route arbitrary network traffic
Published 2020-06-02 · Modified
5.3EPSS 0.285
CVE-2019-1731
Cisco NX-OS Software SSH Key Information Disclosure Vulnerability
Published 2019-05-15 · Modified
5.1EPSS 0.004
CVE-2015-0775
The banner (aka MOTD) implementation in Cisco NX-OS 4.1(2)E1(1f) on Nexus 4000 devices, 5.2(1)SV3(2.1) on Nexus 1000V devices, 6.0(2)N2(2) on Nexus 5000 devices, 6.2(11) on MDS 9000 devices, 6.2(12) on Nexus 7000 devices, 7.0(3) on Nexus 9000 devices, and 7.2(0)ZN(99.67) on Nexus 3000 devices allows remote attackers to cause a denial of service (login process reset) via an unspecified terminal-session request during TELNET session setup, aka Bug IDs CSCuo10554, CSCuu75466, CSCuu75471, CSCuu75484, CSCuu75498, CSCuu77170, and CSCuu77182.
Published 2015-06-12 · Modified
5.0EPSS 0.030
CVE-2015-4277
The global-configuration implementation on Cisco ASR 9000 devices with software 5.1.3 and 5.3.0 improperly closes vty sessions after a commit/end operation, which allows local users to cause a denial of service (tmp/*config file creation, memory consumption, and device hang) via unspecified vectors, aka Bug ID CSCut93842.
Published 2015-08-19 · Modified
4.9EPSS 0.003
CVE-2021-27853
L2 network filtering can be bypassed using stacked VLAN0 and LLC/SNAP headers
Published 2022-09-27 · Modified
4.7EPSS 0.008
CVE-2020-3174
Cisco NX-OS Software Anycast Gateway Invalid ARP Vulnerability
Published 2020-02-26 · Modified
4.7EPSS 0.003
CVE-2015-4237
The CLI parser in Cisco NX-OS 4.1(2)E1(1), 6.2(11b), 6.2(12), 7.2(0)ZZ(99.1), 7.2(0)ZZ(99.3), and 9.1(1)SV1(3.1.8) on Nexus devices allows local users to execute arbitrary OS commands via crafted characters in a filename, aka Bug IDs CSCuv08491, CSCuv08443, CSCuv08480, CSCuv08448, CSCuu99291, CSCuv08434, and CSCuv08436.
Published 2015-07-03 · Modified
4.6EPSS 0.004
CVE-2015-4232
Cisco NX-OS 6.2(10) on Nexus and MDS 9000 devices allows local users to execute arbitrary OS commands by entering crafted tar parameters in the CLI, aka Bug ID CSCus44856.
Published 2015-07-03 · Modified
4.6EPSS 0.004
CVE-2021-1367
Cisco NX-OS Software Protocol Independent Multicast Denial of Service Vulnerability
Published 2021-02-24 · Modified
4.3EPSS 0.004
CVE-2015-4213
Cisco NX-OS 1.1(1g) on Nexus 9000 devices allows remote authenticated users to discover cleartext passwords by leveraging the existence of a decryption mechanism, aka Bug ID CSCuu84391.
Published 2015-06-24 · Modified
4.0EPSS 0.026
CVE-2015-4225
Cisco Application Policy Infrastructure Controller (APIC) 1.0(1.110a) and 1.0(1e) on Nexus 9000 devices does not properly implement RBAC health scoring, which allows remote authenticated users to obtain sensitive information via unspecified vectors, aka Bug ID CSCuq77485.
Published 2015-06-27 · Modified
4.0EPSS 0.020
CVE-2020-3504
Cisco UCS Manager Software Local Management CLI Denial of Service Vulnerability
Published 2020-08-27 · Modified
3.3EPSS 0.003
← Prev3 / 3