PT-2015-2233 · Cisco · Cisco Nx-Os

Publicado

2015-06-24

·

Atualizado

2016-12-28

·

CVE-2015-4213

CVSS v2.0

4.0

Média

VetorAV:N/AC:L/Au:S/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Cisco NX-OS version 1.1(1g)
Description The issue is related to a lack of protection for internal data in the network operating system, which can be exploited by a remote authenticated attacker to gain access to user passwords in cleartext.
Recommendations For Cisco NX-OS version 1.1(1g), consider restricting access to the system until a patch is available to prevent exploitation. As a temporary workaround, limit the privileges of authenticated users to minimize the risk of password exposure.

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-11579
CVE-2015-4213

Produtos afetados

Cisco Nx-Os