CVE detail
CVE-2019-1804
A vulnerability in the SSH key management for the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch Software could allow an unauthenticated, remote attacker to connect to the affected system with the privileges of the root user. The vulnerability is due to the presence of a default SSH key pair that is present in all devices. An attacker could exploit this vulnerability by opening an SSH connection via IPv6 to a targeted device using the extracted key materials. An exploit could allow the attacker to access the system with the privileges of the root user. This vulnerability is only exploitable over IPv6; IPv4 is not vulnerable.
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 13.9 · diversity 11.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
3 source links · newest first
- 6th May – Threat Intelligence BulletinCheck Point Research
For the latest discoveries in cyber research for the week of 6th May 2019, please download our Threat Intelligence Bulletin TOP ATTACKS AND BREACHES A newly reported breach exposes personal information of 80 million American households. Records include full names, addresses, marital status, income brackets and more. The breached database, whose owner has […]
vendorresearch.checkpoint.comMay 6, 2019, 2:34 PM - Cisco addresses a critical flaw in Nexus 9000 switchesSecurity Affairs
Cisco released security patches to address tens of vulnerabilities in its products, including a critical vulnerability affecting Nexus 9000 switches. Cisco released security patches to address tens of vulnerabilities in its products. Among the flaws fixed by Cisco, there is also a critical vulnerability in Nexus 9000 switches that is tracked as CVE-2019-1804 and that […]
newssecurityaffairs.comMay 3, 2019, 11:53 AM Cisco has released patches for tens of vulnerabilities in its products, including a Critical flaw impacting Nexus 9000 switches. Tracked as CVE-2019-1804 and featuring a CVSS score of 9.8, the issue was found in the SSH key management for the Cisco Nexus 9000 Series Application Centric Infrastructure Mode Switch Software.
newswww.securityweek.comMay 2, 2019, 1:58 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2019-1585CVSS 6.7 · Medium
A vulnerability in the controller authorization functionality of Cisco Nexus 9000 Series ACI Mode Switch Software could allow an authenticated, local attacker to escalate standard…
- CVE-2019-1977CVSS 6.8 · Medium
A vulnerability within the Endpoint Learning feature of Cisco Nexus 9000 Series Switches running in Application Centric Infrastructure (ACI) mode could allow an unauthenticated, r…
- CVE-2019-1901CVSS 8.8 · High
A vulnerability in the Link Layer Discovery Protocol (LLDP) subsystem of Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch Software could allow an adjac…
- CVE-2019-1803CVSS 6.7 · Medium
A vulnerability in the filesystem management for the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch Software could allow an authenticated, local atta…
- CVE-2018-0372CVSS 7.5 · High
A vulnerability in the DHCPv6 feature of the Cisco Nexus 9000 Series Fabric Switches in Application-Centric Infrastructure (ACI) Mode could allow an unauthenticated, remote attack…
- CVE-2016-6457CVSS 6.5 · Medium
A vulnerability in the Cisco Nexus 9000 Series Platform Leaf Switches for Application Centric Infrastructure (ACI) could allow an unauthenticated, adjacent attacker to cause a den…