Vulnerability in Open Agent Container of Cisco Nexus Series Switches
CVE-2017-12342
6.8MEDIUM
What is CVE-2017-12342?
A vulnerability exists within the Open Agent Container (OAC) feature of Cisco Nexus Series Switches that permits an unauthenticated, local attacker to manipulate network packets beyond the confines of the OAC. This flaw stems from inadequate security protocols. An attacker can exploit the vulnerability by sending specially crafted packets over the internal device network, which could potentially lead to executing code on the host operating system. Notably, OAC is disabled by default, requiring administrative actions to enable this feature for exploitation.
Affected Version(s)
Cisco Nexus Series Switches Cisco Nexus Series Switches