CVE-2013-6975

medium

Description

Directory traversal vulnerability in the command-line interface in Cisco NX-OS 6.2(2a) and earlier allows local users to read arbitrary files via unspecified input, aka Bug ID CSCul05217.

References

http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6975

http://tools.cisco.com/security/center/viewAlert.x?alertId=34260

http://www.securityfocus.com/bid/67426

Details

Source: MITRE

Published: 2014-05-20

Updated: 2015-10-13

Type: CWE-22

Risk Information

CVSS v2

Base Score: 4.6

Vector: AV:L/AC:L/Au:S/C:C/I:N/A:N

Impact Score: 6.9

Exploitability Score: 3.1

Severity: MEDIUM