peter bassill · operator
$ cve CVE-2019-1804 JSON

CVE-2019-1804

9.8
CRITICAL · CVSS 3.1 · EPSS 3.5% (pctl 89)

In your normal cycle

Critical by CVSS (9.8), but no sign of active exploitation.

Description

A vulnerability in the SSH key management for the Cisco Nexus 9000 Series Application Centric Infrastructure (ACI) Mode Switch Software could allow an unauthenticated, remote attacker to connect to the affected system with the privileges of the root user. The vulnerability is due to the presence of a default SSH key pair that is present in all devices. An attacker could exploit this vulnerability by opening an SSH connection via IPv6 to a targeted device using the extracted key materials. An exploit could allow the attacker to access the system with the privileges of the root user. This vulnerability is only exploitable over IPv6; IPv4 is not vulnerable.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS3.45% — more likely to be exploited than 89% of all CVEs
WeaknessCWE-310
On CISA KEVno
Public exploitnone known
Published2019-05-03
Last modified2026-06-17

Affected (26)

VendorProduct
cisconexus 93108tc-ex
cisconexus 93108tc-ex firmware
cisconexus 93120tx
cisconexus 93120tx firmware
cisconexus 93128tx
cisconexus 93128tx firmware
cisconexus 93180yc-ex
cisconexus 93180yc-ex firmware
cisconexus 9332pq
cisconexus 9332pq firmware
cisconexus 9372px
cisconexus 9372px firmware
cisconexus 9372tx
cisconexus 9372tx firmware
cisconexus 9396px
cisconexus 9396px firmware
cisconexus 9396tx
cisconexus 9396tx firmware
cisconexus 9500
cisconexus 9500 firmware
cisconexus 9504
cisconexus 9504 firmware
cisconexus 9508
cisconexus 9508 firmware
cisconexus 9516
cisconexus 9516 firmware

References

→ the Explorer  ·  watch your stack  ·  NVD