CVE-2014-8003Improper Input Validation in Cisco Unified Computing System

Severity
7.2HIGHNVD
EPSS
0.1%
top 77.75%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 10
Latest updateMay 17

Description

Cisco Integrated Management Controller in Cisco Unified Computing System 2.2(2c)A and earlier allows local users to obtain shell access via a crafted map-nfs command, aka Bug ID CSCup05998.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-r55p-5gm9-gq67: Cisco Integrated Management Controller in Cisco Unified Computing System 22022-05-17
CVEList
CVE-2014-8003: Cisco Integrated Management Controller in Cisco Unified Computing System 22014-12-10

📋Vendor Advisories

1
Cisco
Cisco Integrated Management Controller Privilege Escalation Vulnerability2014-12-01
CVE-2014-8003 — Improper Input Validation in Cisco | cvebase