First published: Thu Oct 06 2016(Updated: )
Cisco NX-OS 4.0 through 7.3 on Multilayer Director and Nexus 1000V, 2000, 3000, 3500, 4000, 5000, 5500, 5600, 6000, 7000, 7700, and 9000 devices allows remote authenticated users to bypass intended AAA restrictions and obtain privileged CLI access via crafted parameters in an SSH connection negotiation, aka Bug IDs CSCum35502, CSCuw78669, CSCuw79754, and CSCux88492.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco NX-OS | =4.1.\(2\) | |
Cisco NX-OS | =4.1.\(3\) | |
Cisco NX-OS | =4.1.\(4\) | |
Cisco NX-OS | =4.1.\(5\) | |
Cisco NX-OS | =4.2\(3\) | |
Cisco NX-OS | =4.2\(4\) | |
Cisco NX-OS | =4.2\(6\) | |
Cisco NX-OS | =4.2\(8\) | |
Cisco NX-OS | =4.2.\(2a\) | |
Cisco NX-OS | =5.0\(2a\) | |
Cisco NX-OS | =5.0\(3\) | |
Cisco NX-OS | =5.0\(5\) | |
Cisco NX-OS | =5.1\(1\) | |
Cisco NX-OS | =5.1\(1a\) | |
Cisco NX-OS | =5.1\(3\) | |
Cisco NX-OS | =5.1\(4\) | |
Cisco NX-OS | =5.1\(5\) | |
Cisco NX-OS | =5.1\(6\) | |
Cisco NX-OS | =5.2\(1\) | |
Cisco NX-OS | =5.2\(3a\) | |
Cisco NX-OS | =5.2\(4\) | |
Cisco NX-OS | =5.2\(5\) | |
Cisco NX-OS | =5.2\(7\) | |
Cisco NX-OS | =5.2\(9\) | |
Cisco NX-OS | =6.0\(1\) | |
Cisco NX-OS | =6.0\(2\) | |
Cisco NX-OS | =6.0\(3\) | |
Cisco NX-OS | =6.0\(4\) | |
Cisco NX-OS | =6.1\(1\) | |
Cisco NX-OS | =6.1\(2\) | |
Cisco NX-OS | =6.1\(3\) | |
Cisco NX-OS | =6.1\(4\) | |
Cisco NX-OS | =6.1\(4a\) | |
Cisco NX-OS | =6.2\(2\) | |
Cisco NX-OS | =6.2\(2a\) | |
Cisco NX-OS | =6.2\(6\) | |
Cisco NX-OS | =6.2\(6b\) | |
Cisco NX-OS | =6.2\(8\) | |
Cisco NX-OS | =6.2\(8a\) | |
Cisco NX-OS | =6.2\(8b\) | |
Cisco NX-OS | =6.2\(10\) | |
Cisco NX-OS | =base | |
Cisco Nexus 7000 | ||
Cisco Nexus 7000 | ||
Cisco Nexus 7000 | ||
Cisco Nexus 7000 9-Slot Firmware | ||
Cisco Nexus 7700 | ||
Cisco Nexus 7700 | ||
Cisco Nexus 7700 | ||
Cisco Nexus 7700 | ||
Cisco NX-OS | =4.1\(2\)e1\(1\) | |
Cisco NX-OS | =4.1\(2\)e1\(1b\) | |
Cisco NX-OS | =4.1\(2\)e1\(1d\) | |
Cisco NX-OS | =4.1\(2\)e1\(1e\) | |
Cisco NX-OS | =4.1\(2\)e1\(1f\) | |
Cisco NX-OS | =4.1\(2\)e1\(1g\) | |
Cisco NX-OS | =4.1\(2\)e1\(1h\) | |
Cisco NX-OS | =4.1\(2\)e1\(1i\) | |
Cisco NX-OS | =4.1\(2\)e1\(1j\) | |
Cisco Nexus 4001i | ||
Cisco NX-OS | =4.0\(0\)n1\(1a\) | |
Cisco NX-OS | =4.0\(0\)n1\(2\) | |
Cisco NX-OS | =4.0\(0\)n1\(2a\) | |
Cisco NX-OS | =4.0\(1a\)n1\(1\) | |
Cisco NX-OS | =4.0\(1a\)n1\(1a\) | |
Cisco NX-OS | =4.0\(1a\)n2\(1\) | |
Cisco NX-OS | =4.0\(1a\)n2\(1a\) | |
Cisco NX-OS | =4.1\(3\)n1\(1\) | |
Cisco NX-OS | =4.1\(3\)n1\(1a\) | |
Cisco NX-OS | =4.1\(3\)n2\(1\) | |
Cisco NX-OS | =4.1\(3\)n2\(1a\) | |
Cisco NX-OS | =4.2\(1\)n1\(1\) | |
Cisco NX-OS | =4.2\(1\)n2\(1\) | |
Cisco NX-OS | =4.2\(1\)n2\(1a\) | |
Cisco NX-OS | =5.0\(2\)n1\(1\) | |
Cisco NX-OS | =5.0\(2\)n2\(1\) | |
Cisco NX-OS | =5.0\(2\)n2\(1a\) | |
Cisco NX-OS | =5.0\(3\)n1\(1c\) | |
Cisco NX-OS | =5.0\(3\)n2\(1\) | |
Cisco NX-OS | =5.0\(3\)n2\(2\) | |
Cisco NX-OS | =5.0\(3\)n2\(2a\) | |
Cisco NX-OS | =5.0\(3\)n2\(2b\) | |
Cisco NX-OS | =5.1\(3\)n1\(1\) | |
Cisco NX-OS | =5.1\(3\)n1\(1a\) | |
Cisco NX-OS | =5.1\(3\)n2\(1\) | |
Cisco NX-OS | =5.1\(3\)n2\(1a\) | |
Cisco NX-OS | =5.1\(3\)n2\(1b\) | |
Cisco NX-OS | =5.1\(3\)n2\(1c\) | |
Cisco NX-OS | =5.2\(1\)n1\(1\) | |
Cisco NX-OS | =5.2\(1\)n1\(1a\) | |
Cisco NX-OS | =5.2\(1\)n1\(1b\) | |
Cisco NX-OS | =5.2\(1\)n1\(2\) | |
Cisco NX-OS | =5.2\(1\)n1\(2a\) | |
Cisco NX-OS | =5.2\(1\)n1\(3\) | |
Cisco NX-OS | =5.2\(1\)n1\(4\) | |
Cisco NX-OS | =5.2\(1\)n1\(5\) | |
Cisco NX-OS | =5.2\(1\)n1\(6\) | |
Cisco NX-OS | =5.2\(1\)n1\(7\) | |
Cisco NX-OS | =5.2\(1\)n1\(8\) | |
Cisco NX-OS | =5.2\(1\)n1\(8a\) | |
Cisco NX-OS | =6.0\(2\)n1\(1\) | |
Cisco NX-OS | =6.0\(2\)n1\(2\) | |
Cisco NX-OS | =6.0\(2\)n1\(2a\) | |
Cisco NX-OS | =6.0\(2\)n2\(1\) | |
Cisco NX-OS | =6.0\(2\)n2\(1b\) | |
Cisco NX-OS | =6.0\(2\)n2\(2\) | |
Cisco NX-OS | =6.0\(2\)n2\(4\) | |
Cisco NX-OS | =6.0\(2\)n2\(5\) | |
Cisco NX-OS | =7.0\(0\)n1\(1\) | |
Cisco NX-OS | =7.0\(1\)n1\(1\) | |
Cisco NX-OS | =7.0\(2\)n1\(1\) | |
Cisco NX-OS | =7.0\(3\)n1\(1\) | |
Cisco Nexus 5010 | ||
Cisco Nexus 5020 | ||
Cisco Nexus 5548P Firmware | ||
Cisco Nexus 5548UP Firmware | ||
Cisco Nexus 5596T Firmware | ||
Cisco Nexus 5596UP Firmware | ||
Cisco 56128p | ||
Cisco Nexus 5624Q Firmware | ||
Cisco Nexus 5648Q Firmware | ||
Cisco Nexus 5672UP-16G | ||
Cisco Nexus 5672UP-16G Firmware | ||
Cisco Nexus 5696Q Firmware | ||
Cisco NX-OS | =6.0\(2\)n2\(3\) | |
Cisco Nexus 6001 Firmware | ||
Cisco Nexus 6004 Firmware | ||
Cisco NX-OS | =4.0\(4\)sv1\(1\) | |
Cisco NX-OS | =4.0\(4\)sv1\(2\) | |
Cisco NX-OS | =4.0\(4\)sv1\(3\) | |
Cisco NX-OS | =4.0\(4\)sv1\(3a\) | |
Cisco NX-OS | =4.0\(4\)sv1\(3b\) | |
Cisco NX-OS | =4.0\(4\)sv1\(3c\) | |
Cisco NX-OS | =4.0\(4\)sv1\(3d\) | |
Cisco NX-OS | =4.2\(1\)sv1\(4\) | |
Cisco NX-OS | =4.2\(1\)sv1\(4a\) | |
Cisco NX-OS | =4.2\(1\)sv1\(4b\) | |
Cisco NX-OS | =4.2\(1\)sv1\(5.1\) | |
Cisco NX-OS | =4.2\(1\)sv1\(5.1a\) | |
Cisco NX-OS | =4.2\(1\)sv1\(5.2\) | |
Cisco NX-OS | =4.2\(1\)sv1\(5.2b\) | |
Cisco NX-OS | =4.2\(1\)sv2\(1.1\) | |
Cisco NX-OS | =4.2\(1\)sv2\(1.1a\) | |
Cisco NX-OS | =4.2\(1\)sv2\(2.1\) | |
Cisco NX-OS | =4.2\(1\)sv2\(2.1a\) | |
Cisco NX-OS | =5.2\(1\)sm1\(5.1\) | |
Microsoft Hyper-V | ||
Cisco Nexus 1000V Switch for VMware vSphere | ||
Cisco NX-OS | =5.0\(3\)u1\(1\) | |
Cisco NX-OS | =5.0\(3\)u1\(1a\) | |
Cisco NX-OS | =5.0\(3\)u1\(1b\) | |
Cisco NX-OS | =5.0\(3\)u1\(1d\) | |
Cisco NX-OS | =5.0\(3\)u1\(2\) | |
Cisco NX-OS | =5.0\(3\)u1\(2a\) | |
Cisco NX-OS | =5.0\(3\)u2\(1\) | |
Cisco NX-OS | =5.0\(3\)u2\(2\) | |
Cisco NX-OS | =5.0\(3\)u2\(2a\) | |
Cisco NX-OS | =5.0\(3\)u2\(2b\) | |
Cisco NX-OS | =5.0\(3\)u2\(2c\) | |
Cisco NX-OS | =5.0\(3\)u2\(2d\) | |
Cisco NX-OS | =5.0\(3\)u3\(1\) | |
Cisco NX-OS | =5.0\(3\)u3\(2\) | |
Cisco NX-OS | =5.0\(3\)u3\(2a\) | |
Cisco NX-OS | =5.0\(3\)u3\(2b\) | |
Cisco NX-OS | =5.0\(3\)u4\(1\) | |
Cisco NX-OS | =5.0\(3\)u5\(1\) | |
Cisco NX-OS | =5.0\(3\)u5\(1a\) | |
Cisco NX-OS | =5.0\(3\)u5\(1b\) | |
Cisco NX-OS | =5.0\(3\)u5\(1c\) | |
Cisco NX-OS | =5.0\(3\)u5\(1e\) | |
Cisco NX-OS | =5.0\(3\)u5\(1f\) | |
Cisco NX-OS | =5.0\(3\)u5\(1g\) | |
Cisco NX-OS | =5.0\(3\)u5\(1h\) | |
Cisco NX-OS | =6.0\(2\)u1\(1\) | |
Cisco NX-OS | =6.0\(2\)u1\(1a\) | |
Cisco NX-OS | =6.0\(2\)u1\(2\) | |
Cisco NX-OS | =6.0\(2\)u1\(3\) | |
Cisco NX-OS | =6.0\(2\)u1\(4\) | |
Cisco NX-OS | =6.0\(2\)u2\(1\) | |
Cisco NX-OS | =6.0\(2\)u2\(2\) | |
Cisco NX-OS | =6.0\(2\)u2\(3\) | |
Cisco NX-OS | =6.0\(2\)u2\(4\) | |
Cisco NX-OS | =6.0\(2\)u2\(5\) | |
Cisco NX-OS | =6.0\(2\)u2\(6\) | |
Cisco NX-OS | =6.0\(2\)u3\(1\) | |
Cisco NX-OS | =6.0\(2\)u3\(2\) | |
Cisco NX-OS | =6.0\(2\)u3\(3\) | |
Cisco NX-OS | =6.0\(2\)u3\(4\) | |
Cisco NX-OS | =6.0\(2\)u3\(5\) | |
Cisco NX-OS | =6.0\(2\)u4\(1\) | |
Cisco NX-OS | =6.0\(2\)u4\(2\) | |
Cisco NX-OS | =6.0\(2\)u4\(3\) | |
Cisco NX-OS | =6.0\(2\)u5\(1\) | |
Cisco Nexus 3016Q Firmware | ||
Cisco Nexus 3048 Firmware | ||
Cisco Nexus 31108PC-V Firmware | ||
Cisco Nexus 31108TC-V Firmware | ||
Cisco Nexus 31128PQ | ||
Cisco Nexus 3132Q-XL | ||
Cisco Nexus 3132Q-V Firmware | ||
Cisco Nexus 3164Q Firmware | ||
Cisco Nexus 3172 Firmware | ||
Cisco Nexus 3232C | ||
Cisco Nexus 3264Q Firmware | ||
Cisco Nexus 3524-xl | ||
Cisco Nexus 3548-X/XL Firmware | ||
Cisco NX-OS | =6.1\(2\)i2\(1\) | |
Cisco NX-OS | =6.1\(2\)i2\(2\) | |
Cisco NX-OS | =6.1\(2\)i2\(2a\) | |
Cisco NX-OS | =6.1\(2\)i2\(2b\) | |
Cisco NX-OS | =6.1\(2\)i2\(3\) | |
Cisco NX-OS | =6.1\(2\)i3\(1\) | |
Cisco NX-OS | =6.1\(2\)i3\(2\) | |
Cisco NX-OS | =6.1\(2\)i3\(3\) | |
Cisco NX-OS | =11.0\(1b\) | |
Cisco NX-OS | =11.0\(1c\) | |
Cisco Nexus 92160YC Switch | ||
Cisco Nexus 92304QC Firmware | ||
Cisco Nexus 9236C | ||
Cisco Nexus 9272Q Switch | ||
Cisco Nexus | ||
Cisco Nexus 93120TX Firmware | ||
Cisco Nexus 93128TX | ||
Cisco Nexus 93180YC-EX-24 | ||
Cisco Nexus 9332PQ Firmware | ||
Cisco Nexus N9336PQ-X | ||
Cisco Nexus 9372PX-E | ||
Cisco Nexus 9372TX Firmware | ||
Cisco Nexus 9396PX Firmware | ||
Cisco Nexus 9396TX Firmware | ||
Cisco Nexus 9504 Firmware | ||
Cisco Nexus 9508 | ||
Cisco Nexus 9516 firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0721 has a CVSS score indicating it is of high severity due to its potential to allow unauthorized privileged access.
To fix CVE-2015-0721, update the affected Cisco NX-OS software to a version that has addressed this security vulnerability.
CVE-2015-0721 affects Cisco NX-OS versions from 4.0 through 7.3 on various Nexus device models.
CVE-2015-0721 affects various Cisco Nexus devices, including the Multilayer Director and models such as Nexus 1000V, 2000, 3000, and more.
Yes, CVE-2015-0721 can allow remote authenticated users to bypass AAA restrictions, potentially leading to unauthorized privileged CLI access.