CVE-2019-1836
Last modified
CVE-2019-1836 is a high-severity vulnerability rated 7.1/10 on the CVSS scale. A vulnerability in the system shell for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an authenticated, local attacker to use symbolic links to overwrite system files. These system files may be sensitive and should not be overwritable by non-root users. EPSS estimates a 0.44% chance of exploitation in the next 30 days.
Description
A vulnerability in the system shell for Cisco Nexus 9000 Series Fabric Switches in Application Centric Infrastructure (ACI) mode could allow an authenticated, local attacker to use symbolic links to overwrite system files. These system files may be sensitive and should not be overwritable by non-root users. The attacker would need valid device credentials. The vulnerability is due to incorrect symbolic link verification of directory paths when they are used in the system shell. An attacker could exploit this vulnerability by authenticating to the device and providing crafted user input to specific symbolic link CLI commands. Successful exploitation could allow the attacker to overwrite system files that should be restricted. This vulnerability has been fixed in software version 14.1(1i).
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Nx-Os | 14.0\(3d\) |
References
- http://www.securityfocus.com/bid/108150Third Party Advisory, VDB Entry
- http://www.securityfocus.com/bid/108150Third Party Advisory, VDB Entry
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-1836?
How severe is CVE-2019-1836?
How do I fix CVE-2019-1836?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-18351Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2019-18352Improper access control exists on PHOENIX CONTACT FL NAT 220…8.2
- CVE-2019-18355An SSRF issue was discovered in the legacy Web launcher in T…9.8
- CVE-2019-18356An XSS issue was discovered in Thycotic Secret Server before…6.1
- CVE-2019-18357An XSS issue was discovered in Thycotic Secret Server before…6.1
- CVE-2019-18359A buffer over-read was discovered in ReadMP3APETag in apetag…5.5
- CVE-2019-18360In JetBrains Hub versions earlier than 2019.1.11738, usernam…5.3
- CVE-2019-18361JetBrains IntelliJ IDEA before 2019.2 allows local user priv…5.3
- CVE-2019-18362JetBrains MPS before 2019.2.2 exposed listening ports to the…5.3
- CVE-2019-18363In JetBrains TeamCity before 2019.1.2, access could be gaine…5.3
- CVE-2019-18364In JetBrains TeamCity before 2019.1.4, insecure Java Deseria…9.8
- CVE-2019-18365In JetBrains TeamCity before 2019.1.4, reverse tabnabbing wa…4.3
Are you affected by CVE-2019-1836?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
