Directory traversal vulnerability in filesys in Cisco NX-OS 6.1(2) and earlier allows local users to access arbitrary files via crafted command-line arguments during a delete action, aka Bug IDs CSCty07270, CSCty07271, CSCty07273, and CSCty07275.
Vector
LOCAL
Complexity
LOW
Authentication
SINGLE_INSTANCE
Confidentiality
NONE
Integrity
COMPLETE
Availability
NONE
cipherdyne fwsnort 1.0.4
cipherdyne fwsnort 0.7.0
Cimon UltimateAccess 3.01
cipherdyne fwsnort 1.0.5
cipherdyne fwsnort 1.0.2
CipherTrust IronMail
Chyrp 2.5
Christos Zoulas file 5.11
cipherdyne fwsnort 0.8.1
CipherTrust IronMail 5.0.1
cipherdyne fwsnort 1.6.4
Christos Zoulas file 5.02
Christos Zoulas file 5.17
Christos Zoulas file 5.08
Christos Zoulas file 5.19
Cisco 1811 Integrated Service Router
Cisco 1861 Integrated Service Router
CipherTrust IronMail 4.5.1
cipherdyne fwsnort 0.6.1
cipherdyne fwsnort 1.0
Christopher M. Mitchell Smart Breadcrumb module for Drupal 6.x-1.0
Cisco 2900 Integrated Service Router
Chromium 11.0.696.64
cipherdyne fwsnort 1.6.3
Cisco 2500 Series Wireless LAN Controller
Christos Zoulas file 5.01
Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4.0(4) SV1(3)
cipherdyne fwsnort 1.0.3
Christos Zoulas file 5.16
cipherdyne fwsnort 1.6.5
cipherdyne fwsnort 1.6
Cisco 2700 Wireless Location Appliance 1.1.73.0
cipherdyne fwknop 2.0
cipherdyne fwsnort 0.9.0
Cisco 2125 Series Wireless LAN Controller
cipherdyne fwknop 2.0.3
Cisco 1841 Integrated Service Router
Cimon CMNView 2.14.0.1
Christos Zoulas file 5.14
Christopher M. Mitchell Smart Breadcrumb module for Drupal 6.x-1.x-dev
cir Circa News (aka cir.ca) for android 2.1.3
Christos Zoulas file 5.18
Cimon UltimateAccess 3.00
K-Meleon 1.0
cipherdyne fwsnort 1.0.6
Christos Zoulas file 5.05
Cisco 1941W Integrated Services Router
cipherdyne fwsnort 0.8.0
Cisco 1941 Integrated Services Router
Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4.0(4) SV1(3b)
CipherTrust IronMail 6.1.1
Christopher M. Mitchell Smart Breadcrumb module for Drupal 6.x-1.1
Christos Zoulas file 5.06
cipherdyne fwsnort 0.8.2
CIBC CIBC Mobile Banking (aka com.cibc.android.mobi) application for Android 3.2
cipherdyne fwsnort 1.6.1
Cisco 2504 Series Wireless LAN Controller
Cisco 2700 Wireless Location Appliance
Cisco Cisco 12000
cipherdyne fwknop 2.0.1
cipherdyne fwknop 2.0.2
cipherdyne fwsnort 0.6.3
Cisco 1812 Integrated Service Router
K-Meleon 0.8
Christos Zoulas file 5.03
Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4.0(4) SV1(2)
Cisco 1802 Integrated Service Router
cipherdyne fwsnort 1.0.1
Christos Zoulas file 5.15
CipherTrust IronMail 4.5.2
Cisco 1921 Integrated Services Router
Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4.0(4) SV1(3a)
Christopher M. Mitchell Smart Breadcrumb module for Drupal 6.x-1.2
K-Meleon 1.5
Cisco 2100 Series Wireless LAN Controller
Christos Zoulas file 5.00
Christos Zoulas file 5.09
Christos Zoulas file 5.13
cipherdyne fwsnort 0.6.2
Christos Zoulas file 5.04
K-Meleon 1.1
Cisco 1801 Integrated Service Router
Cisco Nexus 1000V Virtual Ethernet Module (VEM) 4.0(4) SV1(1)
Christos Zoulas file 5.07
cipherdyne fwsnort 1.5
Cisco 1803 Integrated Service Router
Cisco 2112 Series Wireless LAN Controller
CipherTrust IronMail 4.1
cipherdyne fwsnort 0.6.5
cipherdyne fwsnort 0.6.4
Christos Zoulas file 5.10
Christos Zoulas file 5.12
Cisco 2000 Series Wireless LAN Controller
Chromium 40.0.2214.94
cipherdyne fwsnort 1.6.2
Cisco 2106 Series Wireless LAN Controller
cipherdyne fwsnort 0.6
cipherdyne fwsnort 0.5
Advisory | Patch | Confirmed | Link |
---|---|---|---|
20131219 Cisco NX-OS Directory Traversal Vulnerability | |||
http://tools.cisco.com/security/center/viewAlert.x?alert... |
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (ID 22)
Related CAPEC 7
Relative Path Traversal (CAPEC-ID 139)
Directory Traversal (CAPEC-ID 213)
File System Function Injection, Content Based (CAPEC-ID 23)
Using Slashes and URL Encoding Combined to Bypass Validation Logic (CAPEC-ID 64)
Manipulating Input to File System Calls (CAPEC-ID 76)
Using Escaped Slashes in Alternate Encoding (CAPEC-ID 78)
Using Slashes in Alternate Encoding (CAPEC-ID 79)