Cisco NX-OS Cisco Fabric Services Multiple Vulnerabilities.

critical Nessus Plugin ID 110687

Synopsis

The remote device is missing a vendor-supplied security patch.

Description

According to its self-reported version, the Cisco NX-OS Software is affected by one or more vulnerabilities. Please see the included Cisco BIDs and the Cisco Security Advisory for more information.

Solution

Upgrade to the relevant fixed / recommended version referenced in Cisco Security Advisories.

See Also

http://www.nessus.org/u?6219c29b

http://www.nessus.org/u?267dc032

http://www.nessus.org/u?217b85b2

http://www.nessus.org/u?0884367f

http://www.nessus.org/u?7a5a1307

http://www.nessus.org/u?f589839d

http://www.nessus.org/u?33153cf4

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69943

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69951

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69954

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69957

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69960

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69962

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCvd69966

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02429

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02433

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02435

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02445

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02459

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02461

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02463

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02474

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02785

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02787

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02804

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02808

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02810

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02812

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02819

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02822

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve02831

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve04859

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41530

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41536

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41537

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41538

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41541

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41557

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41559

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41590

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41593

https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve41601

Plugin Details

Severity: Critical

ID: 110687

File Name: cisco-sa-20180620-cfs.nasl

Version: 1.16

Type: combined

Family: CISCO

Published: 6/25/2018

Updated: 4/27/2020

Risk Information

VPR

Risk Factor: Medium

Score: 5.9

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Temporal Vector: E:U/RL:OF/RC:C

CVSS Score Source: CVE-2018-0304

CVSS v3

Risk Factor: Critical

Base Score: 9.8

Temporal Score: 8.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Temporal Vector: E:U/RL:O/RC:C

Vulnerability Information

CPE: cpe:/o:cisco:nx-os

Required KB Items: Host/Cisco/NX-OS/Version, Host/Cisco/NX-OS/Model, Host/Cisco/NX-OS/Device

Exploit Ease: No known exploits are available

Patch Publication Date: 6/20/2018

Vulnerability Publication Date: 6/20/2018

Reference Information

CVE: CVE-2018-0304, CVE-2018-0305, CVE-2018-0308, CVE-2018-0310, CVE-2018-0311, CVE-2018-0312, CVE-2018-0314