Denial of Service Vulnerability in Cisco Nexus 9000 Series Switches by Cisco
CVE-2017-3878
5.3MEDIUM
Summary
A Denial of Service flaw exists in the Telnet remote login feature of Cisco NX-OS Software on Nexus 9000 Series Switches, enabling an unauthenticated remote attacker to disrupt the Telnet login process. This disruption results in login attempts failing, while user traffic remains unaffected. The issue is present in configurations allowing remote Telnet connections to the device, potentially impacting operational efficiency. Multiple software releases including 7.0(3)I3(0.170) are affected, with several versions already addressing the vulnerability.
Affected Version(s)
Cisco Nexus 9000 Series Switches Cisco Nexus 9000 Series Switches
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved