CVE-2015-6388

Severity
5.0MEDIUM
EPSS
0.3%
top 49.13%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 5
Latest updateMay 17

Description

Cisco Unified Computing System (UCS) Central software 1.3(0.1) allows remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted request, aka Bug ID CSCux33575.

CVSS vector

AV:N/AC:L/C:N/I:P/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-g7c5-43m5-jg8v: Cisco Unified Computing System (UCS) Central software 12022-05-17
CVEList
CVE-2015-6388: Cisco Unified Computing System (UCS) Central software 12015-12-05

📋Vendor Advisories

1
Cisco
Cisco UCS Central Software Server-Side Request Forgery Vulnerability2015-12-01
CVE-2015-6388 (MEDIUM CVSS 5) | Cisco Unified Computing System (UCS | cvebase.io