Cisco NX-OS Cisco Fabric Services Multiple Vulnerabilities.

critical Nessus Plugin ID 110687
New! Vulnerability Priority Rating (VPR)

Tenable calculates a dynamic VPR for every vulnerability. VPR combines vulnerability information with threat intelligence and machine learning algorithms to predict which vulnerabilities are most likely to be exploited in attacks. Read more about what VPR is and how it is different from CVSS.

VPR Score: 5.9

Synopsis

The remote device is missing a vendor-supplied security patch.

Description

According to its self-reported version, the Cisco NX-OS Software is affected by one or more vulnerabilities. Please see the included Cisco BIDs and the Cisco Security Advisory for more information.

Solution

Upgrade to the relevant fixed / recommended version referenced in Cisco Security Advisories.

See Also

http://www.nessus.org/u?6219c29b

http://www.nessus.org/u?267dc032

http://www.nessus.org/u?217b85b2

http://www.nessus.org/u?0884367f

http://www.nessus.org/u?7a5a1307

http://www.nessus.org/u?f589839d

http://www.nessus.org/u?33153cf4

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69943

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69951

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69954

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69957

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69960

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69962

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69966

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02429

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02433

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02435

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02445

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02459

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02461

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02463

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02474

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02785

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02787

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02804

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02808

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02810

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02812

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02819

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02822

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02831

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve04859

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41530

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41536

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41537

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41538

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41541

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41557

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41559

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41590

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41593

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41601

Plugin Details

Severity: Critical

ID: 110687

File Name: cisco-sa-20180620-cfs.nasl

Version: 1.16

Type: combined

Family: CISCO

Published: 6/25/2018

Updated: 4/27/2020

Dependencies: cisco_nxos_version.nasl

Risk Information

Risk Factor: Critical

VPR Score: 5.9

CVSS Score Source: CVE-2018-0304

CVSS v2.0

Base Score: 10

Temporal Score: 7.4

Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: E:U/RL:OF/RC:C

CVSS v3.0

Base Score: 9.8

Temporal Score: 8.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:cisco:nx-os

Required KB Items: Host/Cisco/NX-OS/Version, Host/Cisco/NX-OS/Model, Host/Cisco/NX-OS/Device

Exploit Ease: No known exploits are available

Patch Publication Date: 6/20/2018

Vulnerability Publication Date: 6/20/2018

Reference Information

CVE: CVE-2018-0304, CVE-2018-0305, CVE-2018-0308, CVE-2018-0310, CVE-2018-0311, CVE-2018-0312, CVE-2018-0314