CVE-2015-4286

Severity
5.0MEDIUM
EPSS
0.1%
top 76.83%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 29
Latest updateMay 17

Description

The web framework in Cisco UCS Central Software 1.3(0.99) allows remote attackers to read arbitrary files via a crafted HTTP request, aka Bug ID CSCuu41377.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-p468-m6gq-36cp: The web framework in Cisco UCS Central Software 12022-05-17
CVEList
CVE-2015-4286: The web framework in Cisco UCS Central Software 12015-07-29

📋Vendor Advisories

1
Cisco
Cisco UCS Central Software File Access Vulnerability2015-07-28
CVE-2015-4286 (MEDIUM CVSS 5) | The web framework in Cisco UCS Cent | cvebase.io