CVE-2014-0676: Medium severity Cisco NX-OS vulnerability
Published Jan 22, 2014
·Updated
Cisco NX-OS allows local users to bypass intended TACACS+ command restrictions via a series of multiple commands, aka Bug ID CSCum47367.
Affected Software
1 affected component
Cisco NX-OS
Event History
Jan 22, 2014
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Data Sourced
via NVD·09:55 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2014-0676?
CVE-2014-0676 has been classified as a high-severity vulnerability affecting Cisco NX-OS.
2
How do I fix CVE-2014-0676?
To fix CVE-2014-0676, ensure that your Cisco NX-OS is updated to a version that addresses this vulnerability.
3
Who is affected by CVE-2014-0676?
CVE-2014-0676 affects local users of Cisco NX-OS who can bypass TACACS+ command restrictions.
4
What are the risks associated with CVE-2014-0676?
The risk associated with CVE-2014-0676 includes unauthorized command execution by local users, potentially leading to system compromise.
5
Is there a workaround for CVE-2014-0676?
Currently, there are no documented workarounds for CVE-2014-0676; the recommended action is to apply the necessary software updates.