First published: Tue May 20 2014(Updated: )
Directory traversal vulnerability in the command-line interface in Cisco NX-OS 6.2(2a) and earlier allows local users to read arbitrary files via unspecified input, aka Bug ID CSCul05217.
Credit: ykramarz@cisco.com psirt@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco NX-OS | <=6.2\(2a\) | |
Cisco NX-OS | =6.0\(1\) | |
Cisco NX-OS | =6.0\(2\) | |
Cisco NX-OS | =6.1 | |
Cisco NX-OS | =6.1\(1\) | |
Cisco NX-OS | =6.1\(2\) | |
Cisco NX-OS | =6.1\(3\) | |
Cisco NX-OS | =6.2\(2\) | |
<=6.2\(2a\) | ||
=6.0\(1\) | ||
=6.0\(2\) | ||
=6.1 | ||
=6.1\(1\) | ||
=6.1\(2\) | ||
=6.1\(3\) | ||
=6.2\(2\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-6975 is considered a medium severity vulnerability due to its potential exploitation by local users.
To fix CVE-2013-6975, upgrade to a version of Cisco NX-OS that is later than 6.2(2a) and includes security patches.
CVE-2013-6975 affects local users of Cisco NX-OS versions 6.2(2a) and earlier.
CVE-2013-6975 is a directory traversal vulnerability that allows unauthorized file access.
CVE-2013-6975 could allow local users to read arbitrary files on the affected systems.