Lucene search

K
cve[email protected]CVE-2013-1211
HistoryOct 03, 2022 - 4:14 p.m.

CVE-2013-1211

2022-10-0316:14:49
CWE-287
web.nvd.nist.gov
23
cisco
nx-os
authentication
vulnerability
nexus 1000v
vem
vsm
stun
vmware esxi
cscud14832

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

7 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

48.9%

Cisco NX-OS on the Nexus 1000V does not properly handle authentication for Virtual Ethernet Module (VEM) to Virtual Supervisor Module (VSM) communication, which allows remote attackers to obtain VEM access via (1) spoofed STUN packets or (2) a crafted VMware ESXi instance, aka Bug ID CSCud14832.

Affected configurations

NVD
Node
cisconx-osMatch-
AND
cisconexus_1000vMatch-
CPENameOperatorVersion
cisco:nx-oscisco nx-oseq-

5 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:L/Au:N/C:N/I:P/A:N

7 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

48.9%

Related for CVE-2013-1211