Unauthorized Access Vulnerability in Cisco FXOS and NX-OS Software
CVE-2018-0294
What is CVE-2018-0294?
A vulnerability exists in the write-erase functionality of Cisco FXOS Software and NX-OS Software, allowing authenticated local attackers to create unauthorized administrative accounts. This security flaw arises from improper deletion of sensitive files, particularly when specific CLI commands are executed for clearing device configurations and reloading the system. Attackers exploiting this vulnerability can gain access through SSH without needing a password, leading to potential unauthorized control over crucial system operations, all while remaining undetected in the running configuration or audit logs.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco FXOS and NX-OS unknown Cisco FXOS and NX-OS unknown
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved