Directory traversal vulnerability in filesys in Cisco NX-OS 6.1(2) and earlier allows local users to access arbitrary files via crafted command-line arguments during a delete action, aka Bug IDs CSCty07270, CSCty07271, CSCty07273, and CSCty07275.
No CVSS v3.1
No CVSS v3.0
Access Vector Local
Access Complexity Low
Authentication Single
Confidentiality Impact None
Integrity Impact Complete
Availability Impact None
AV:L/AC:L/Au:S/C:N/I:C/A:N
Vendors | Products |
---|---|
Cisco |
|
Configuration 1 [-]
|
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-4135 | Vendor Advisory |
http://tools.cisco.com/security/center/viewAlert.x?alertId=32237 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: cisco
Published: 2013-12-21T11:00:00
Updated: 2013-12-21T02:57:00
Reserved: 2012-07-31T00:00:00
Link: CVE-2012-4135
JSON object: View
NVD Information
Status : Analyzed
Published: 2013-12-21T14:22:56.067
Modified: 2013-12-23T17:15:16.130
Link: CVE-2012-4135
JSON object: View
Redhat Information
No data.
CWE