cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
803
Views
1
Helpful
2
Replies

CSCwj97007 - Cisco NX-OS Software CLI Command Injection Vulnerability

Obaid0310
Level 1
Level 1

I am using Cisco MDS 9710 switch with below OS version.

BIOS: version 3.7.0
kickstart: version 8.4(2d)
system: version 8.4(2d)

Are we still vulnerable to this latest bulletin? or Can I safely ignore this for the time being. Any insight on this will be greatly appreciated.

2 Replies 2

Mark Elsen
Hall of Fame
Hall of Fame

 

  - Ref : https://bst.cloudapps.cisco.com/bugsearch/bug/CSCwj97007
    No fixed versions are mentioned , so still vulnerable , if solution desired contact Cisco TAC
   or https://sec.cloudapps.cisco.com/security/center/resources/security_vulnerability_policy.html

 M.



-- Let everything happen to you  
       Beauty and terror
      Just keep going    
       No feeling is final
Reiner Maria Rilke (1899)

Thank You. Cisco TAC suggested to upgrade it to 8.4(2f). This is the first version where the issue is fixed.