cbcvebase.
CVE-2015-6424
published 2015-12-18

CVE-2015-6424: The boot manager in Cisco Application Policy Infrastructure Controller (APIC) 1.1(0.920a) allows local users to bypass intended access restrictions and obtain…

PriorityP426high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.38%
30.9th percentile
The boot manager in Cisco Application Policy Infrastructure Controller (APIC) 1.1(0.920a) allows local users to bypass intended access restrictions and obtain single-user-mode root access via unspecified vectors, aka Bug ID CSCuu83985.

Affected

3 ranges
VendorProductVersion rangeFixed in
ciscoapplication_policy_infrastructure_controller
ciscoapplication_policy_infrastructure_controller
x.orgxorg-server>= 0 < 2:1.15.1-0ubuntu2.72:1.15.1-0ubuntu2.7

CVSS provenance

nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
osv5.0MEDIUM
vendor_cisco6.8MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.