Database/Firmware, BMC & network fabric
Cisco NX-OS / FXOS (Cisco Fabric Services): Unauthenticated remote code execution as root through Cisco Fabric
Impact
Unauthenticated remote code execution as root through Cisco Fabric Services, the inter-switch distribution protocol. CFS is on by default on many platforms and speaks between switches, so a single compromised switch or a host that can spoof CFS reaches every other switch that trusts the same distribution domain. Part of a 2018 cluster (CVE-2018-0304/0308/0310/0312/0314) that shares this exposure.
Who can reach it
Unauthenticated, remote — the attacker must be able to send CFS messages, which in an unsegmented fabric means any host on a VLAN where CFS-over-IP is enabled.
What to do
NX-OS upgrade plus reload. Immediately: disable CFS distribution and CFS-over-IP where you do not use it (no cfs distribute, no cfs ipv4 distribute) — live config, no reload, and it closes the whole 2018 family at once.
References
Related entries
- Eaton Intelligent Power Manager v1.6 - node_upgrade_srv.js firmware parameter: Local file inclusion through directoryCVE-2018-12031 · Eaton Intelligent Power Manager v1.6 - node_upgrade_srv.js firmware parameterCritical
- Dell iDRAC7/8: CGI injection giving unauthenticated remote code execution as root on the BMCCVE-2018-1207 · Dell iDRAC7/8Critical
- Intel Baseboard Management Controller firmware before 1.43.91f76955 (Intel server boards and systems): An unprivilegedCVE-2018-12171 · Intel Baseboard Management Controller firmware before 1.43.91f76955 (Intel server boards and systems)Critical
- QLogic 4Gb Fibre Channel 5.5.2.6.0 and 4/8Gb SAN 7.10.1.20.0 switch modules for IBM BladeCenter: Three undocumentedCVE-2018-18202 · QLogic 4Gb Fibre Channel 5.5.2.6.0 and 4/8Gb SAN 7.10.1.20.0 switch modules for IBM BladeCenterCritical
- Schneider Electric MGE Network Management Card Transverse (MGE UPS / MGE STS): The card's integrated web serverCVE-2018-7243 · Schneider Electric MGE Network Management Card Transverse (MGE UPS / MGE STS)Critical
- Schneider Electric MGE Network Management Card Transverse (MGE UPS / MGE STS): On default settings without SSL enabledCVE-2018-7246 · Schneider Electric MGE Network Management Card Transverse (MGE UPS / MGE STS)Critical
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.