Cisco Unified Computing System vulnerabilities

63 known vulnerabilities affecting cisco/cisco_unified_computing_system.

Total CVEs
63
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH20MEDIUM40LOW1

Vulnerabilities

Page 4 of 4
CVE-2019-1631MEDIUMCVSS 5.3≥ unspecified, < 4.0(4b)2019-06-20
CVE-2019-1631 [MEDIUM] CWE-306 CVE-2019-1631: A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to access potentially sensitive system usage information. The vulnerability is due to a lack of proper data protection mechanisms. An attacker could exploit this vulnerability by sending a crafted HTTP r
cvelistv5nvd
CVE-2019-1629MEDIUMCVSS 5.3v4.02019-06-20
CVE-2019-1629 [MEDIUM] CWE-306 CVE-2019-1629: A vulnerability in the configuration import utility of Cisco Integrated Management Controller (IMC) A vulnerability in the configuration import utility of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to have write access and upload arbitrary data to the filesystem. The vulnerability is due to a failure to delete temporarily uploaded files. An attacker could exploit this vulnerability by crafting a malic
cvelistv5nvd
CVE-2019-1880MEDIUMCVSS 4.4≥ unspecified, < 4.0(4c)2019-06-05
CVE-2019-1880 [MEDIUM] CWE-345 CVE-2019-1880: A vulnerability in the BIOS upgrade utility of Cisco Unified Computing System (UCS) C-Series Rack Se A vulnerability in the BIOS upgrade utility of Cisco Unified Computing System (UCS) C-Series Rack Servers could allow an authenticated, local attacker to install compromised BIOS firmware on an affected device. The vulnerability is due to insufficient validation of the firmware image file. An attacker could exploit this vulnerability by executing the
cvelistv5nvd