Cisco NX-OS System Software CVE-2017-12340 Local Unauthorized Access Vulnerability
BID:102069
Info
Cisco NX-OS System Software CVE-2017-12340 Local Unauthorized Access Vulnerability
| Bugtraq ID: | 102069 |
| Class: | Design Error |
| CVE: |
CVE-2017-12340 |
| Remote: | No |
| Local: | Yes |
| Published: | Nov 29 2017 12:00AM |
| Updated: | Dec 19 2017 10:37PM |
| Credit: | The vendor has reported this issue. |
| Vulnerable: |
Cisco NX-OS for Nexus 7700 Series 0 Cisco NX-OS for Nexus 7000 Series 0 Cisco NX-OS 0 Cisco Multilayer Director Switches 0 |
| Not Vulnerable: | |
Discussion
Cisco NX-OS System Software CVE-2017-12340 Local Unauthorized Access Vulnerability
Cisco NX-OS System Software is prone to a unauthorized access vulnerability.
An attacker can exploit this issue to bypass the security mechanism and gain unauthorized access. This may lead to further attacks.
This issue is tracked by Cisco Bug ID CSCvd86513.
Cisco NX-OS System Software is prone to a unauthorized access vulnerability.
An attacker can exploit this issue to bypass the security mechanism and gain unauthorized access. This may lead to further attacks.
This issue is tracked by Cisco Bug ID CSCvd86513.
Exploit / POC
Cisco NX-OS System Software CVE-2017-12340 Local Unauthorized Access Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Cisco NX-OS System Software CVE-2017-12340 Local Unauthorized Access Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Cisco NX-OS System Software CVE-2017-12340 Local Unauthorized Access Vulnerability
References:
References:
- Cisco Homepage (Cisco )
- Bash Shell Unauthorized Access Vulnerability (cisco)