![]() |
Inicial ▼ Bookkeeping
Online ▼ Auditorias ▼
DNS
Administrado ▼
Acerca de DNS
Ordenar/Renovar
Preguntas Frecuentes
AUP
Dynamic DNS Clients
Configurar Dominios Dynamic DNS Update Password Monitoreo
de Redes ▼
Enterprise
Avanzado
Estándarr
Prueba
Preguntas Frecuentes
Resumen de Precio/Funciones
Ordenar
Muestras
Configure/Status Alert Profiles | ||
ID de Prueba: | 1.3.6.1.4.1.25623.1.0.105069 |
Categoría: | CISCO |
Título: | Cisco NX-OS Arbitrary File Read Vulnerability (CSCul23419) |
Resumen: | A vulnerability in the command-line interface (CLI) of Cisco; NX-OS Software could allow an authenticated, local attacker to access the contents of arbitrary; files on the affected device. |
Descripción: | Summary: A vulnerability in the command-line interface (CLI) of Cisco NX-OS Software could allow an authenticated, local attacker to access the contents of arbitrary files on the affected device. Vulnerability Insight: Cisco NX-OS software contains a directory traversal vulnerability within the command line interface that could allow a local, authenticated attacker to disclose the contents of arbitrary files on the affected device. Vulnerability Impact: An attacker could leverage the NX-OS 'copy' command to duplicate the contents of arbitrary files on the device to a user writable area of the filesystem. As the new file will be owned by the authenticated user, the attacker will be able to view the contents. Affected Software/OS: Cisco Nexus 7000, Cisco MDS 9000, Cisco Nexus 6000, Cisco Nexus 5500, Cisco Nexus 5000, Cisco Nexus 4000, Cisco Nexus 3500, Cisco Nexus 3000, Cisco Nexus 1000V, Cisco Connected Grid Router 1000 Series, Cisco Unified Computing System Fabric Interconnect 6200 and Cisco Unified Computing System Fabric Interconnect 6100. Solution: See the referenced vendor advisory for a solution. CVSS Score: 4.6 CVSS Vector: AV:L/AC:L/Au:S/C:C/I:N/A:N |
Referencia Cruzada: |
Common Vulnerability Exposure (CVE) ID: CVE-2013-6975 BugTraq ID: 67426 http://www.securityfocus.com/bid/67426 Cisco Security Advisory: 20140515 Cisco NX-OS Software Arbitrary File Read Vulnerability http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6975 |
Copyright | Copyright (C) 2014 Greenbone Networks GmbH |
Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa. Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora. |