Denial of Service Vulnerability in Cisco Nexus Dashboard Software
CVE-2023-20014

7.5HIGH

Key Information:

Vendor

Cisco

Vendor
CVE Published:
1 March 2023

What is CVE-2023-20014?

A vulnerability exists in the DNS functionality of Cisco Nexus Dashboard Software that could be exploited by an unauthenticated remote attacker. The issue arises from improper processing of DNS requests, enabling an attacker to send a continuous stream of DNS queries to the affected device. This exploitation could lead to a disruption of the coredns service, either causing it to stop functioning or forcing the device to reboot, resulting in a Denial of Service condition.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Cisco Nexus Dashboard 1.1(0c)

Cisco Nexus Dashboard 1.1(0d)

Cisco Nexus Dashboard 1.1(2h)

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.