Cisco Unified Computing System vulnerabilities

64 known vulnerabilities affecting cisco/unified_computing_system.

Total CVEs
64
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL2HIGH32MEDIUM30

Vulnerabilities

Page 4 of 4
CVE-2014-8003HIGHCVSS 7.2≤ 2.2\(2c\)a2014-12-10
CVE-2014-8003 [HIGH] CWE-20 CVE-2014-8003: Cisco Integrated Management Controller in Cisco Unified Computing System 2.2(2c)A and earlier allows Cisco Integrated Management Controller in Cisco Unified Computing System 2.2(2c)A and earlier allows local users to obtain shell access via a crafted map-nfs command, aka Bug ID CSCup05998.
nvd
CVE-2014-8009MEDIUMCVSS 5.0≤ 2.1\(3f\)2014-12-10
CVE-2014-8009 [MEDIUM] CWE-200 CVE-2014-8009: The Management subsystem in Cisco Unified Computing System 2.1(3f) and earlier allows remote attacke The Management subsystem in Cisco Unified Computing System 2.1(3f) and earlier allows remote attackers to obtain sensitive information by reading log files, aka Bug ID CSCur99239.
nvd
CVE-2012-4078HIGHCVSS 8.5v1.0\(2k\)v1.0_base+2 more2013-09-24
CVE-2012-4078 [HIGH] CWE-287 CVE-2012-4078: The Baseboard Management Controller (BMC) in Cisco Unified Computing System (UCS) does not properly The Baseboard Management Controller (BMC) in Cisco Unified Computing System (UCS) does not properly handle SSH escape sequences, which allows remote authenticated users to bypass an unspecified authentication step via SSH port forwarding, aka Bug ID CSCtg17656.
nvd
CVE-2012-4081MEDIUMCVSS 4.6v1.0\(2k\)v1.0_base+15 more2013-09-20
CVE-2012-4081 [MEDIUM] CWE-119 CVE-2012-4081: MCServer in the Cisco Management Controller in Cisco Unified Computing System (UCS) allows local use MCServer in the Cisco Management Controller in Cisco Unified Computing System (UCS) allows local users to cause a denial of service (application crash) via invalid MCTools parameters, aka Bug ID CSCtg20734.
nvd
Cisco Unified Computing System vulnerabilities | cvebase