CVE-2014-3348

Severity
5.0MEDIUM
EPSS
1.6%
top 18.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 10
Latest updateMay 17

Description

The SSH module in the Integrated Management Controller (IMC) before 2.3.1 in Cisco Unified Computing System on E-Series blade servers allows remote attackers to cause a denial of service (IMC hang) via a crafted SSH packet, aka Bug ID CSCuo69206.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-7v92-w294-rhvv: The SSH module in the Integrated Management Controller (IMC) before 22022-05-17
CVEList
CVE-2014-3348: The SSH module in the Integrated Management Controller (IMC) before 22014-09-10

📋Vendor Advisories

2
Cisco
Cisco Unified Computing System E-Series Blade Servers Cisco Integrated Management Controller SSH Denial of Service Vulnerability2014-09-08
Cisco
Cisco Integrated Management Controller SSH Denial of Service Vulnerability2014-09-05
CVE-2014-3348 (MEDIUM CVSS 5) | The SSH module in the Integrated Ma | cvebase.io