CVE-2013-1212: Medium severity cisco nx-os vulnerability
The SSL functionality in Cisco NX-OS on the Nexus 1000V does not properly verify X.509 certificates, which allows man-in-the-middle attackers to spoof servers, and intercept or modify Virtual Supervisor Module (VSM) to VMware vCenter communication, via a crafted certificate, aka Bug ID CSCud14837.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-1212?
CVE-2013-1212 is classified as a medium severity vulnerability.
What systems are affected by CVE-2013-1212?
CVE-2013-1212 affects Cisco NX-OS on the Nexus 1000V.
How do I fix CVE-2013-1212?
To fix CVE-2013-1212, update your Cisco NX-OS and Nexus 1000V software to the latest versions that address this vulnerability.
What is the impact of CVE-2013-1212?
CVE-2013-1212 allows man-in-the-middle attackers to spoof servers and intercept or modify communication between the Virtual Supervisor Module and VMware vCenter.
Does CVE-2013-1212 involve X.509 certificate issues?
Yes, CVE-2013-1212 occurs due to improper verification of X.509 certificates in Cisco NX-OS.