Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
mds 9000 vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2018-0313
A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, remote malicious user to send a malicious packet to the management interface on an affected system and execute a command-injection exploit. The vulnerability is due to incorrect input vali...
Cisco Nx-os 7.0\\(0\\)hsk\\(0.357\\)
Cisco Nx-os 8.0\\(1\\)s20
Cisco Nx-os 8.1\\(0\\)bd\\(0.20\\)
Cisco Nx-os 8.1\\(0.97\\)s0
Cisco Nx-os 8.1\\(1\\)s5
Cisco Nx-os -
6.5
CVSSv3
CVE-2020-3120
A vulnerability in the Cisco Discovery Protocol implementation for Cisco FXOS Software, Cisco IOS XR Software, and Cisco NX-OS Software could allow an unauthenticated, adjacent malicious user to cause a reload of an affected device, resulting in a denial of service (DoS) conditio...
Cisco Firepower Extensible Operating System
Cisco Fxos 2.4
Cisco Ios Xr 5.2.5
Cisco Ios Xr 6.4.2
Cisco Ios Xr 6.5.3
Cisco Ios Xr 6.6.25
Cisco Ios Xr 7.0.1
Cisco Nx-os
Cisco Ucs Manager
1 Github repository
8.8
CVSSv3
CVE-2022-20824
A vulnerability in the Cisco Discovery Protocol feature of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent malicious user to execute arbitrary code with root privileges or cause a denial of service (DoS) condition on an affected device. This ...
Cisco Mds 9506 Firmware -
Cisco Mds 9513 Firmware -
Cisco Mds 9706 Firmware -
Cisco Mds 9710 Firmware -
Cisco Mds 9718 Firmware -
Cisco Nexus 1000v Firmware -
Cisco Nexus 3016 Firmware -
Cisco Nexus 3016q Firmware -
Cisco Nexus 3048 Firmware -
Cisco Nexus 3064 Firmware -
Cisco Nexus 3064-32t Firmware -
Cisco Nexus 3064-t Firmware -
Cisco Nexus 3064-x Firmware -
Cisco Nexus 3064t Firmware -
Cisco Nexus 3064x Firmware -
Cisco Nexus 3100 Firmware -
Cisco Nexus 3100-v Firmware -
Cisco Nexus 3100-z Firmware -
Cisco Nexus 3100v Firmware -
Cisco Nexus 31108pc-v Firmware -
Cisco Nexus 31108pv-v Firmware -
Cisco Nexus 31108tc-v Firmware -
NA
CVE-2013-1179
Multiple buffer overflows in the (1) SNMP and (2) License Manager implementations in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x prior to 5.2(5) and 6.x prior to 6.1(1) and MDS 9000 devices 4.x and 5.x prior to 5.2(5) allow remote authenticated users to execute arbitrary code v...
Cisco Nx-os 4.0\\(4\\)sv1\\(3a\\)
Cisco Nx-os 4.0\\(4\\)sv1\\(3b\\)
Cisco Nx-os 4.0\\(4\\)sv1\\(3c\\)
Cisco Nx-os 4.0
Cisco Nx-os 4.0\\(0\\)n1\\(2\\)
Cisco Nx-os 4.0\\(1a\\)n1\\(1\\)
Cisco Nx-os 4.0\\(0\\)n1\\(2a\\)
Cisco Nx-os 4.2\\(1\\)
Cisco Nx-os 5.0\\(2\\)n2\\(1\\)
Cisco Nx-os 5.0\\(2\\)n2\\(1a\\)
Cisco Nx-os 5.0\\(3\\)n1\\(1b\\)
Cisco Nx-os 5.0\\(2\\)n1\\(1\\)
Cisco Nx-os 5.2\\(3\\)
Cisco Nx-os 5.1\\(4\\)
Cisco Nx-os 5.1\\(3\\)
Cisco Nx-os 5.1\\(1a\\)
Cisco Nx-os 4.2\\(1\\)sv1\\(4a\\)
Cisco Nx-os 4.2\\(1\\)sv1\\(4\\)
Cisco Nx-os 4.1\\(3\\)n1\\(1a\\)
Cisco Nx-os 4.2\\(1\\)n2\\(1a\\)
Cisco Nx-os 4.2
Cisco Nx-os 4.1\\(3\\)n2\\(1a\\)
7.5
CVSSv3
CVE-2017-3733
During a renegotiation handshake if the Encrypt-Then-Mac extension is negotiated where it was not in the original handshake (or vice-versa) then this can cause OpenSSL 1.1.0 prior to 1.1.0e to crash (dependent on ciphersuite). Both clients and servers are affected.
Openssl Openssl 1.1.0
Openssl Openssl 1.1.0c
Openssl Openssl 1.1.0d
Openssl Openssl 1.1.0a
Openssl Openssl 1.1.0b
Hp Operations Agent 11.15
Hp Operations Agent 11.14
1 Github repository
7.8
CVSSv3
CVE-2019-1601
A vulnerability in the filesystem permissions of Cisco NX-OS Software could allow an authenticated, local malicious user to gain read and write access to a critical configuration file. The vulnerability is due to a failure to impose strict filesystem permissions on the targeted d...
Cisco Nx-os
8.8
CVSSv3
CVE-2019-1614
A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, remote malicious user to execute arbitrary commands with root privileges. The vulnerability is due to incorrect input validation of user-supplied data by the NX-API subsystem. An attacker ...
Cisco Nx-os
7.8
CVSSv3
CVE-2019-1605
A vulnerability in the NX-API feature of Cisco NX-OS Software could allow an authenticated, local malicious user to execute arbitrary code as root. The vulnerability is due to incorrect input validation in the NX-API feature. An attacker could exploit this vulnerability by sendin...
Cisco Nx-os
8.8
CVSSv3
CVE-2020-3172
A vulnerability in the Cisco Discovery Protocol feature of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent malicious user to execute arbitrary code as root or cause a denial of service (DoS) condition on an affected device. The vulnerability ...
Cisco Firepower Extensible Operating System
Cisco Ucs Manager
Cisco Nx-os -
Cisco Nx-os 5.2\\(1\\)sv5\\(1.2\\)
Cisco Nx-os 7.3\\(5\\)n1\\(1\\)
Cisco Nx-os 7.3\\(0\\)d1\\(0.140\\)
Cisco Nx-os 7.3\\(0\\)d1\\(0.146\\)
Cisco Nx-os 7.0\\(3\\)i3\\(0.191\\)
Cisco Nx-os 13.2\\(7.230\\)
Cisco Nx-os 14.2\\(1i\\)
1 Github repository
7.5
CVSSv3
CVE-2017-3730
In OpenSSL 1.1.0 prior to 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL pointer leading to a client crash. This could be exploited in a Denial of Service attack.
Openssl Openssl 1.1.0c
Openssl Openssl 1.1.0
Openssl Openssl 1.1.0b
Openssl Openssl 1.1.0a
Oracle Agile Engineering Data Management 6.2.0
Oracle Jd Edwards World Security A9.2
Oracle Communications Eagle Lnp Application Processor 10.1
Oracle Communications Application Session Controller 3.7.1
Oracle Jd Edwards World Security A9.4
Oracle Jd Edwards Enterpriseone Tools 9.2
Oracle Communications Operations Monitor 3.4
Oracle Communications Operations Monitor 4.0
Oracle Agile Engineering Data Management 6.1.3
Oracle Jd Edwards World Security A9.1
Oracle Jd Edwards World Security A9.3
Oracle Communications Eagle Lnp Application Processor 10.0
Oracle Communications Eagle Lnp Application Processor 10.2
Oracle Communications Application Session Controller 3.8.0
1 EDB exploit
1 Github repository
1 Article
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »