CVE-2016-1455

Cisco NX-OS before 7.0(3)I2(2e) and 7.0(3)I4 before 7.0(3)I4(1) has an incorrect iptables local-interface configuration, which allows remote attackers to obtain sensitive information via TCP or UDP traffic, aka Bug ID CSCuz05365.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:cisco:nx-os:7.0\(3\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:nx-os:7.0\(3\)i1\(1\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:nx-os:7.0\(3\)i1\(1a\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:nx-os:7.0\(3\)i1\(1b\):*:*:*:*:*:*:*
cpe:2.3:o:cisco:nx-os:7.0\(3\)i1\(2\):*:*:*:*:*:*:*
OR cpe:2.3:h:cisco:nexus_93128:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:nexus_9396px:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:nexus_9396tx:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:nexus_9504:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:nexus_9508:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:nexus_9516:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:nexus_n9336pq:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:46

Type Values Removed Values Added
References () http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161005-n9kinfo - Vendor Advisory () http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20161005-n9kinfo - Vendor Advisory
References () http://www.securityfocus.com/bid/93415 - () http://www.securityfocus.com/bid/93415 -
References () http://www.securitytracker.com/id/1036957 - () http://www.securitytracker.com/id/1036957 -

Information

Published : 2016-10-05 20:59

Updated : 2024-11-21 02:46


NVD link : CVE-2016-1455

Mitre link : CVE-2016-1455

CVE.ORG link : CVE-2016-1455


JSON object : View

Products Affected

cisco

  • nexus_93128
  • nexus_n9336pq
  • nexus_9508
  • nx-os
  • nexus_9504
  • nexus_9396tx
  • nexus_9396px
  • nexus_9516
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor