CVE-2015-4225: Medium severity cisco nx-os vulnerability
Cisco Application Policy Infrastructure Controller (APIC) 1.0(1.110a) and 1.0(1e) on Nexus 9000 devices does not properly implement RBAC health scoring, which allows remote authenticated users to obtain sensitive information via unspecified vectors, aka Bug ID CSCuq77485.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4225?
CVE-2015-4225 has a medium severity rating due to its potential for allowing remote authenticated users to access sensitive information.
How do I fix CVE-2015-4225?
To fix CVE-2015-4225, you should upgrade to a secure version of Cisco Application Policy Infrastructure Controller that is not vulnerable to this issue.
What versions of Cisco NX-OS are affected by CVE-2015-4225?
CVE-2015-4225 affects Cisco NX-OS versions 1.0(1.110a) and 1.0(1e).
Who can exploit CVE-2015-4225?
CVE-2015-4225 can be exploited by remote authenticated users with access to the affected device.
What type of vulnerability is CVE-2015-4225?
CVE-2015-4225 is a vulnerability related to improper implementation of role-based access control (RBAC) health scoring.