A vulnerability in the implementation of the system login block-for command for Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a login process to unexpectedly restart, causing a denial of service (DoS) condition. This vulnerability is due to a logic error in the implementation of the system login block-for command when an attack is detected and acted upon. An attacker could exploit this vulnerability by performing a brute-force login attack on an affected device. A successful exploit could allow the attacker to cause a login process to reload, which could result in a delay during authentication to the affected device.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Cisco
Subscribe
|
Nexus 3000
Subscribe
Nexus 3048
Subscribe
Nexus 31108pc-v
Subscribe
Nexus 31108tc-v
Subscribe
Nexus 31128pq
Subscribe
Nexus 3132c-z
Subscribe
Nexus 3132q-v
Subscribe
Nexus 3132q-x\/3132q-xl
Subscribe
Nexus 3164q
Subscribe
Nexus 3172pq\/pq-xl
Subscribe
Nexus 3172tq-xl
Subscribe
Nexus 3232c
Subscribe
Nexus 3264c-e
Subscribe
Nexus 3264q
Subscribe
Nexus 3408-s
Subscribe
Nexus 34180yc
Subscribe
Nexus 3432d-s
Subscribe
Nexus 3464c
Subscribe
Nexus 3524-x\/xl
Subscribe
Nexus 3548-x\/xl
Subscribe
Nexus 36180yc-r
Subscribe
Nexus 3636c-r
Subscribe
Nexus 5548p
Subscribe
Nexus 5548up
Subscribe
Nexus 5596t
Subscribe
Nexus 5596up
Subscribe
Nexus 56128p
Subscribe
Nexus 5624q
Subscribe
Nexus 5648q
Subscribe
Nexus 5672up
Subscribe
Nexus 5672up-16g
Subscribe
Nexus 5696q
Subscribe
Nexus 6001
Subscribe
Nexus 6004
Subscribe
Nexus 7000 10-slot
Subscribe
Nexus 7000 18-slot
Subscribe
Nexus 7000 4-slot
Subscribe
Nexus 7000 9-slot
Subscribe
Nexus 7000 Supervisor 1
Subscribe
Nexus 7000 Supervisor 2
Subscribe
Nexus 7000 Supervisor 2e
Subscribe
Nexus 7004
Subscribe
Nexus 7009
Subscribe
Nexus 7010
Subscribe
Nexus 7018
Subscribe
Nexus 7700
Subscribe
Nexus 7700 10-slot
Subscribe
Nexus 7700 18-slot
Subscribe
Nexus 7700 2-slot
Subscribe
Nexus 7700 6-slot
Subscribe
Nexus 7700 Supervisor 2e
Subscribe
Nexus 7700 Supervisor 3e
Subscribe
Nexus 7702
Subscribe
Nexus 7706
Subscribe
Nexus 7710
Subscribe
Nexus 7718
Subscribe
Nexus 9000v
Subscribe
Nexus 92160yc-x
Subscribe
Nexus 92300yc
Subscribe
Nexus 92304qc
Subscribe
Nexus 92348gc-x
Subscribe
Nexus 9236c
Subscribe
Nexus 9272q
Subscribe
Nexus 93108tc-ex
Subscribe
Nexus 93108tc-ex-24
Subscribe
Nexus 93108tc-fx
Subscribe
Nexus 93108tc-fx-24
Subscribe
Nexus 93108tc-fx3p
Subscribe
Nexus 93120tx
Subscribe
Nexus 93128tx
Subscribe
Nexus 9316d-gx
Subscribe
Nexus 93180lc-ex
Subscribe
Nexus 93180yc-ex
Subscribe
Nexus 93180yc-ex-24
Subscribe
Nexus 93180yc-fx
Subscribe
Nexus 93180yc-fx-24
Subscribe
Nexus 93180yc-fx3
Subscribe
Nexus 93180yc-fx3s
Subscribe
Nexus 93216tc-fx2
Subscribe
Nexus 93240yc-fx2
Subscribe
Nexus 9332c
Subscribe
Nexus 9332pq
Subscribe
Nexus 93360yc-fx2
Subscribe
Nexus 9336c-fx2
Subscribe
Nexus 9336c-fx2-e
Subscribe
Nexus 9348gc-fxp
Subscribe
Nexus 93600cd-gx
Subscribe
Nexus 9364c
Subscribe
Nexus 9364c-gx
Subscribe
Nexus 9372px
Subscribe
Nexus 9372px-e
Subscribe
Nexus 9372tx
Subscribe
Nexus 9372tx-e
Subscribe
Nexus 9396px
Subscribe
Nexus 9396tx
Subscribe
Nexus 9508
Subscribe
Nx-os
Subscribe
Unified Computing System
Subscribe
Unified Computing System 6248up
Subscribe
Unified Computing System 6296up
Subscribe
Unified Computing System 6324
Subscribe
Unified Computing System 6332
Subscribe
Unified Computing System 6332-16up
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-7057 | A vulnerability in the implementation of the system login block-for command for Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a login process to unexpectedly restart, causing a denial of service (DoS) condition. This vulnerability is due to a logic error in the implementation of the system login block-for command when an attack is detected and acted upon. An attacker could exploit this vulnerability by performing a brute-force login attack on an affected device. A successful exploit could allow the attacker to cause a login process to reload, which could result in a delay during authentication to the affected device. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Thu, 07 Nov 2024 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: cisco
Published:
Updated: 2024-11-07T22:02:13.143Z
Reserved: 2020-11-13T00:00:00
Link: CVE-2021-1590
Updated: 2024-08-03T16:18:10.362Z
Status : Modified
Published: 2021-08-25T20:15:11.657
Modified: 2024-11-21T05:44:41.597
Link: CVE-2021-1590
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD