9
CVSSv2

CVE-2013-1180

Published: 25/04/2013 Updated: 25/04/2013
CVSS v2 Base Score: 9 | Impact Score: 10 | Exploitability Score: 8
VMScore: 801
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in the SNMP implementation in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x prior to 5.2(5) and 6.x prior to 6.1(1) and MDS 9000 devices 4.x and 5.x prior to 5.2(5) allows remote authenticated users to execute arbitrary code via a crafted SNMP request, aka Bug ID CSCtx54822.

Affected Products

Vendor Product Versions
CiscoMds 9000*
CiscoNexus 7000-
CiscoNexus 7000 10-slot-
CiscoNexus 7000 18-slot-
CiscoNexus 7000 9-slot-
CiscoNx-os4.0, 4.0(0)n1(1a), 4.0(0)n1(2), 4.0(0)n1(2a), 4.0(1a)n1(1), 4.0(1a)n1(1a), 4.0(1a)n2(1), 4.0(1a)n2(1a), 4.0(4)sv1(1), 4.0(4)sv1(2), 4.0(4)sv1(3), 4.0(4)sv1(3a), 4.0(4)sv1(3b), 4.0(4)sv1(3c), 4.0(4)sv1(3d), 4.1(3)n1(1), 4.1(3)n1(1a), 4.1(3)n2(1), 4.1(3)n2(1a), 4.1.(2), 4.1.(3), 4.1.(4), 4.1.(5), 4.2, 4.2(1), 4.2(1)n1(1), 4.2(1)n2(1), 4.2(1)n2(1a), 4.2(1)sv1(4), 4.2(1)sv1(4a), 4.2(1)sv1(5.1), 4.2(2), 4.2(3), 4.2(4), 4.2(6), 4.2(8), 4.2.(2a), 5.0, 5.0(2), 5.0(2)n1(1), 5.0(2)n2(1), 5.0(2)n2(1a), 5.0(2a), 5.0(3), 5.0(3)n1(1), 5.0(3)n1(1a), 5.0(3)n1(1b), 5.0(3)n1(1c), 5.0(3)n2(1), 5.0(3)n2(2), 5.0(3)n2(2a), 5.0(3)n2(2b), 5.0(5), 5.1, 5.1(1), 5.1(1a), 5.1(2), 5.1(3), 5.1(3)n1(1), 5.1(3)n1(1a), 5.1(4), 5.1(5), 5.1(6), 5.2, 5.2(1), 5.2(3), 5.2(3a), 5.2(4), 6.0(1), 6.0(2), 6.1

Vendor Advisories

Cisco Nexus, Cisco Unified Computing System (UCS), Cisco MDS 9000 Series Multilayer Switches, and Cisco 1000 Series Connected Grid Routers (CGR) are all based on the Cisco NX-OS operating system  These products are affected by one or more of the following vulnerabilities: Multiple Cisco Discovery Protocol Vulnerabilities in Cisco NX-OS-Based ...