cbcvebase.

Cisco Cloud Services Platform 2100 vulnerabilities

4 known vulnerabilities affecting cisco/cloud_services_platform_2100.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL2HIGH2

Vulnerabilities

Page 1 of 1
CVE-2017-12251P2CRITICALCVSS 9.9v2.1.0v2.1.1+4 more2017-10-19
CVE-2017-12251 [CRITICAL] CWE-264 CVE-2017-12251: A vulnerability in the web console of the Cisco Cloud Services Platform (CSP) 2100 could allow an au A vulnerability in the web console of the Cisco Cloud Services Platform (CSP) 2100 could allow an authenticated, remote attacker to interact maliciously with the services or virtual machines (VMs) operating remotely on an affected CSP device. The vulnerability is due to weaknesses in the generation of certain authentication mechanisms in the URL o
nvd
CVE-2016-6374P2CRITICALCVSS 9.8v2.0.02016-09-22
CVE-2016-6374 [CRITICAL] CWE-20 CVE-2016-6374: Cisco Cloud Services Platform (CSP) 2100 2.0 allows remote attackers to execute arbitrary code via a Cisco Cloud Services Platform (CSP) 2100 2.0 allows remote attackers to execute arbitrary code via a crafted dnslookup command in an HTTP request, aka Bug ID CSCuz89093.
nvd
CVE-2018-0394P3HIGHCVSS 8.8v2.2\(4\)2018-07-18
CVE-2018-0394 [HIGH] CWE-20 CVE-2018-0394: A vulnerability in the web upload function of Cisco Cloud Services Platform 2100 could allow an auth A vulnerability in the web upload function of Cisco Cloud Services Platform 2100 could allow an authenticated, remote attacker to obtain restricted shell access on an affected system. The vulnerability is due to insufficient input validation of parameters passed to a specific function within the user interface. An attacker could exploit this vulnerabilit
nvd
CVE-2016-6373P3HIGHCVSS 7.2v2.0.0_base2016-09-22
CVE-2016-6373 [HIGH] CWE-78 CVE-2016-6373: The web-based GUI in Cisco Cloud Services Platform (CSP) 2100 2.0 allows remote authenticated admini The web-based GUI in Cisco Cloud Services Platform (CSP) 2100 2.0 allows remote authenticated administrators to execute arbitrary OS commands as root via crafted platform commands, aka Bug ID CSCva00541.
nvd
Cisco Cloud Services Platform 2100 vulnerabilities | cvebase