Attacker Value
Unknown
(0 users assessed)
Exploitability
Unknown
(0 users assessed)
User Interaction
None
Privileges Required
None
Attack Vector
Adjacent_network
0

CVE-2022-20824

Disclosure Date: August 24, 2022
Add MITRE ATT&CK tactics and techniques that apply to this CVE.

Description

A vulnerability in the Cisco Discovery Protocol feature of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to execute arbitrary code with root privileges or cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper input validation of specific values that are within a Cisco Discovery Protocol message. An attacker could exploit this vulnerability by sending a malicious Cisco Discovery Protocol packet to an affected device. A successful exploit could allow the attacker to execute arbitrary code with root privileges or cause the Cisco Discovery Protocol process to crash and restart multiple times, which would cause the affected device to reload, resulting in a DoS condition. Note: Cisco Discovery Protocol is a Layer 2 protocol. To exploit this vulnerability, an attacker must be in the same broadcast domain as the affected device (Layer 2 adjacent).

Add Assessment

No one has assessed this topic. Be the first to add your voice to the community.

CVSS V3 Severity and Metrics
Base Score:
8.8 High
Impact Score:
5.9
Exploitability Score:
2.8
Vector:
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector (AV):
Adjacent_network
Attack Complexity (AC):
Low
Privileges Required (PR):
None
User Interaction (UI):
None
Scope (S):
Unchanged
Confidentiality (C):
High
Integrity (I):
High
Availability (A):
High

General Information

Vendors

  • cisco

Products

  • mds 9506 firmware -,
  • mds 9513 firmware -,
  • mds 9706 firmware -,
  • mds 9710 firmware -,
  • mds 9718 firmware -,
  • nexus 1000v firmware -,
  • nexus 3016 firmware -,
  • nexus 3016q firmware -,
  • nexus 3048 firmware -,
  • nexus 3064 firmware -,
  • nexus 3064-32t firmware -,
  • nexus 3064-t firmware -,
  • nexus 3064-x firmware -,
  • nexus 3064t firmware -,
  • nexus 3064x firmware -,
  • nexus 3100 firmware -,
  • nexus 3100-v firmware -,
  • nexus 3100-z firmware -,
  • nexus 3100v firmware -,
  • nexus 31108pc-v firmware -,
  • nexus 31108pv-v firmware -,
  • nexus 31108tc-v firmware -,
  • nexus 31128pq firmware -,
  • nexus 3132c-z firmware -,
  • nexus 3132q firmware -,
  • nexus 3132q-v firmware -,
  • nexus 3132q-x firmware -,
  • nexus 3132q-x/3132q-xl firmware -,
  • nexus 3132q-xl firmware -,
  • nexus 3164q firmware -,
  • nexus 3172 firmware -,
  • nexus 3172pq firmware -,
  • nexus 3172pq-xl firmware -,
  • nexus 3172pq/pq-xl firmware -,
  • nexus 3172tq firmware -,
  • nexus 3172tq-32t firmware -,
  • nexus 3172tq-xl firmware -,
  • nexus 3200 firmware -,
  • nexus 3232c firmware -,
  • nexus 3232c firmware -,
  • nexus 3264c-e firmware -,
  • nexus 3264q firmware -,
  • nexus 3400 firmware -,
  • nexus 3408-s firmware -,
  • nexus 34180yc firmware -,
  • nexus 34200yc-sm firmware -,
  • nexus 3432d-s firmware -,
  • nexus 3464c firmware -,
  • nexus 3524 firmware -,
  • nexus 3524-x firmware -,
  • nexus 3524-x/xl firmware -,
  • nexus 3524-xl firmware -,
  • nexus 3548 firmware -,
  • nexus 3548-x firmware -,
  • nexus 3548-x/xl firmware -,
  • nexus 3548-xl firmware -,
  • nexus 36180yc-r firmware -,
  • nexus 3636c-r firmware -,
  • nexus 5548p firmware -,
  • nexus 5548up firmware -,
  • nexus 5596t firmware -,
  • nexus 5596up firmware -,
  • nexus 5600 firmware -,
  • nexus 56128p firmware -,
  • nexus 5624q firmware -,
  • nexus 5648q firmware -,
  • nexus 5672up firmware -,
  • nexus 5672up-16g firmware -,
  • nexus 5696q firmware -,
  • nexus 6000 firmware -,
  • nexus 6001 firmware -,
  • nexus 6001p firmware -,
  • nexus 6001t firmware -,
  • nexus 6004 firmware -,
  • nexus 6004x firmware -,
  • nexus 7000 firmware -,
  • nexus 7000 supervisor 1 firmware -,
  • nexus 7000 supervisor 2 firmware -,
  • nexus 7000 supervisor 2e firmware -,
  • nexus 7004 firmware -,
  • nexus 7009 firmware -,
  • nexus 7010 firmware -,
  • nexus 7018 firmware -,
  • nexus 7700 firmware -,
  • nexus 7700 supervisor 2e firmware -,
  • nexus 7700 supervisor 3e firmware -,
  • nexus 7702 firmware -,
  • nexus 7706 firmware -,
  • nexus 7710 firmware -,
  • nexus 7718 firmware -,
  • nexus 9000 firmware -,
  • nexus 9000v firmware -,
  • nexus 9200 firmware -,
  • nexus 92160yc-x firmware -,
  • nexus 9221c firmware -,
  • nexus 92300yc firmware -,
  • nexus 92304qc firmware -,
  • nexus 92348gc-x firmware -,
  • nexus 9236c firmware -,
  • nexus 9272q firmware -,
  • nexus 9300 firmware -,
  • nexus 93108tc-ex firmware -,
  • nexus 93108tc-ex-24 firmware -,
  • nexus 93108tc-fx firmware -,
  • nexus 93108tc-fx-24 firmware -,
  • nexus 93108tc-fx3p firmware -,
  • nexus 93120tx firmware -,
  • nexus 93128 firmware -,
  • nexus 93128tx firmware -,
  • nexus 9316d-gx firmware -,
  • nexus 93180lc-ex firmware -,
  • nexus 93180tc-ex firmware -,
  • nexus 93180yc-ex firmware -,
  • nexus 93180yc-ex-24 firmware -,
  • nexus 93180yc-fx firmware -,
  • nexus 93180yc-fx-24 firmware -,
  • nexus 93180yc-fx3 firmware -,
  • nexus 93180yc-fx3s firmware -,
  • nexus 93216tc-fx2 firmware -,
  • nexus 93240yc-fx2 firmware -,
  • nexus 9332c firmware -,
  • nexus 9332pq firmware -,
  • nexus 93360yc-fx2 firmware -,
  • nexus 9336c-fx2 firmware -,
  • nexus 9336c-fx2-e firmware -,
  • nexus 9336pq firmware -,
  • nexus 9348gc-fxp firmware -,
  • nexus 93600cd-gx firmware -,
  • nexus 9364c firmware -,
  • nexus 9364c-gx firmware -,
  • nexus 9372px firmware -,
  • nexus 9372px-e firmware -,
  • nexus 9372tx firmware -,
  • nexus 9372tx-e firmware -,
  • nexus 9396px firmware -,
  • nexus 9396tx firmware -,
  • nexus 9500 supervisor a firmware -,
  • nexus 9500 supervisor a+ firmware -,
  • nexus 9500 supervisor b firmware -,
  • nexus 9500 supervisor b+ firmware -,
  • nexus 9500r firmware -,
  • nexus 9504 firmware -,
  • nexus 9508 firmware -,
  • nexus 9516 firmware -
Technical Analysis