Denial of Service Vulnerability in Cisco Nexus 9000 Series Switches by Cisco
CVE-2017-3878

5.3MEDIUM

Key Information:

Vendor
Cisco
Vendor
CVE Published:
17 March 2017

Summary

A Denial of Service flaw exists in the Telnet remote login feature of Cisco NX-OS Software on Nexus 9000 Series Switches, enabling an unauthenticated remote attacker to disrupt the Telnet login process. This disruption results in login attempts failing, while user traffic remains unaffected. The issue is present in configurations allowing remote Telnet connections to the device, potentially impacting operational efficiency. Multiple software releases including 7.0(3)I3(0.170) are affected, with several versions already addressing the vulnerability.

Affected Version(s)

Cisco Nexus 9000 Series Switches Cisco Nexus 9000 Series Switches

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.