CVE-2019-1812: Cisco NX-OS CLI Command Software Image Signature Verification Vulnerabilities
A vulnerability in the Image Signature Verification feature of Cisco NX-OS Software could allow an authenticated, local attacker with administrator-level credentials to install a malicious software image on an affected device. The vulnerability exists because software digital signatures are not properly verified during CLI command execution. An attacker could exploit this vulnerability to install an unsigned software image on an affected device.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-1812?
The severity of CVE-2019-1812 is classified as high due to its potential impact allowing an attacker to install malicious software images.
How do I fix CVE-2019-1812?
To fix CVE-2019-1812, upgrade to a fixed software version as recommended in the Cisco security advisory.
What causes CVE-2019-1812 vulnerability?
CVE-2019-1812 is caused by improper image signature verification in Cisco NX-OS software.
Who is affected by CVE-2019-1812?
CVE-2019-1812 affects devices running vulnerable versions of Cisco NX-OS software.
Can CVE-2019-1812 be exploited remotely?
CVE-2019-1812 requires local, authenticated access with administrator-level credentials for exploitation.