Vulnerability Description
Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via shell metacharacters in a command that calls the system library function, aka Bug IDs CSCtf23559 and CSCtf27780.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Nx-Os | - |
Related Weaknesses (CWE)
References
- http://osvdb.org/98126
- http://secunia.com/advisories/55205
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-4076Vendor Advisory
- http://www.securityfocus.com/bid/62848Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/87678
- http://osvdb.org/98126
- http://secunia.com/advisories/55205
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-4076Vendor Advisory
- http://www.securityfocus.com/bid/62848Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/87678
FAQ
What is CVE-2012-4076?
CVE-2012-4076 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Cisco NX-OS allows local users to gain privileges and execute arbitrary commands via shell metacharacters in a command that calls the system library function, aka Bug IDs CSCtf23559 and CSCtf27780.
How severe is CVE-2012-4076?
CVE-2012-4076 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-4076?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Nx-Os.