Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-8rv4-9j5w-w345

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The SSL functionality in Cisco NX-OS on the Nexus 1000V does not properly verify X.509 certificates, which allows man-in-the-middle attackers to spoof servers, and intercept or modify Virtual Supervisor Module (VSM) to VMware vCenter communication, via a crafted certificate, aka Bug ID CSCud14837.

The SSL functionality in Cisco NX-OS on the Nexus 1000V does not properly verify X.509 certificates, which allows man-in-the-middle attackers to spoof servers, and intercept or modify Virtual Supervisor Module (VSM) to VMware vCenter communication, via a crafted certificate, aka Bug ID CSCud14837.

EPSS

Процентиль: 39%
0.00176
Низкий

Связанные уязвимости

nvd
больше 12 лет назад

The SSL functionality in Cisco NX-OS on the Nexus 1000V does not properly verify X.509 certificates, which allows man-in-the-middle attackers to spoof servers, and intercept or modify Virtual Supervisor Module (VSM) to VMware vCenter communication, via a crafted certificate, aka Bug ID CSCud14837.

EPSS

Процентиль: 39%
0.00176
Низкий