CVE-2016-1352

Severity
9.8CRITICAL
EPSS
0.4%
top 39.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 14
Latest updateMay 17

Description

Cisco Unified Computing System (UCS) Central Software 1.3(1b) and earlier allows remote attackers to execute arbitrary OS commands via a crafted HTTP request, aka Bug ID CSCuv33856.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-r6vc-5wc9-vgfw: Cisco Unified Computing System (UCS) Central Software 12022-05-17
CVEList
CVE-2016-1352: Cisco Unified Computing System (UCS) Central Software 12016-04-14

📋Vendor Advisories

1
Cisco
Cisco Unified Computing System Central Software Arbitrary Command Execution Vulnerability2016-04-13
CVE-2016-1352 (CRITICAL CVSS 9.8) | Cisco Unified Computing System (UCS | cvebase.io