← Vulnerability feed

Vulnerability record · CVE-2014-3341 · published 19 August 2014

CVE-2014-3341: Cisco nx-os information exposure vulnerability

Cisco · Nx Os

The SNMP module in Cisco NX-OS 7.0(3)N1(1) and earlier on Nexus 5000 and 6000 devices provides different error messages for invalid requests depending on whether the VLAN ID exists, which allows remote attackers to enumerate VLANs via a series of requests, aka Bug ID CSCup85616.

5.0 CVSS 2.0 Medium EPSS 4.7% · top 8.4% CWE-200 · Information exposure
5.0CVSS 2.0 base score
4.7%EPSS exploitation probability, 30 days
NoNot in CISA KEV
15Affected product versions listed by NVD
10References
17 Jun 2026Last modified by NVD

Description

The SNMP module in Cisco NX-OS 7.0(3)N1(1) and earlier on Nexus 5000 and 6000 devices provides different error messages for invalid requests depending on whether the VLAN ID exists, which allows remote attackers to enumerate VLANs via a series of requests, aka Bug ID CSCup85616.

AV:N/AC:L/Au:N/C:P/I:N/A:N

Affected products

15 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2014-3341 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.3CVE-2013-1192Cisco adaptive security appliance device manager improper input validation vulnerabilityThe JAR files on Cisco Device Manager for Cisco MDS 9000 devices before 5.2.8, and Cisco Device Manager for Cisco Nexus 5000 devices, allow remote at…EPSS 2.4%8.3CVE-2013-1178Cisco nx-os memory buffer overflow vulnerabilityMultiple buffer overflows in the Cisco Discovery Protocol (CDP) implementation in Cisco NX-OS on Nexus 7000 devices 4.x and 5.x before 5.2(4) and 6.x…EPSS 1.4%7.8CVE-2011-4023Cisco nx-os vulnerabilityMemory leak in libcmd in Cisco NX-OS 5.0 on Nexus switches allows remote authenticated users to cause a denial of service (memory consumption) via SN…EPSS 1.3%7.8CVE-2012-0352Cisco nx-os vulnerabilityCisco NX-OS 4.2.x before 4.2(1)SV1(5.1) on Nexus 1000v series switches; 4.x and 5.0.x before 5.0(2)N1(1) on Nexus 5000 series switches; and 4.2.x bef…EPSS 1.2%7.8CVE-2009-0627Cisco nx-os vulnerabilityUnspecified vulnerability in Cisco NX-OS before 4.0(1a)N2(1), when running on Nexus 5000 platforms, allows remote attackers to cause a denial of serv…EPSS 2.1%7.6CVE-2014-3261Cisco unified computing system 6120xp fabric interconnect memory buffer overflow vulnerabilityBuffer overflow in the Smart Call Home implementation in Cisco NX-OS on Fabric Interconnects in Cisco Unified Computing System 1.4 before 1.4(1i), NX…EPSS 2.0%5.0CVE-2012-1357Cisco nx-os memory buffer overflow vulnerabilityThe igmp_snoop_orib_fill_source_update function in the IGMP process in NX-OS 5.0 and 5.1 on Cisco Nexus 5000 series switches allows remote attackers …EPSS 1.2%5.0CVE-2011-2581Cisco nx-os permissions and access controls vulnerabilityThe ACL implementation in Cisco NX-OS 5.0(2) and 5.0(3) before 5.0(3)N2(1) on Nexus 5000 series switches, and NX-OS before 5.0(3)U1(2a) on Nexus 3000…EPSS 2.0%

Source: NIST National Vulnerability Database (record CVE-2014-3341), CISA KEV, FIRST EPSS (scores of 2026-10-06). This page is refreshed as NVD updates the record.