CVE-2013-1211

Severity CVSS v4.0:
Pending analysis
Type:
CWE-287 Authentication Issues
Publication date:
29/05/2013
Last modified:
11/04/2025

Description

Cisco NX-OS on the Nexus 1000V does not properly handle authentication for Virtual Ethernet Module (VEM) to Virtual Supervisor Module (VSM) communication, which allows remote attackers to obtain VEM access via (1) spoofed STUN packets or (2) a crafted VMware ESXi instance, aka Bug ID CSCud14832.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:cisco:nx-os:-:*:*:*:*:*:*:*
cpe:2.3:h:cisco:nexus_1000v:-:*:*:*:*:*:*:*