Cisco Unified Computing System vulnerabilities
64 known vulnerabilities affecting cisco/unified_computing_system.
Total CVEs
64
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
1
Severity breakdown
CRITICAL2HIGH32MEDIUM30
Vulnerabilities
Page 4 of 4
CVE-2021-1592P4MEDIUMCVSS 4.3≥ 4.0, < 4.0\(4m\)≥ 4.1, < 4.1\(3e\)2021-08-25
CVE-2021-1592 [MEDIUM] CWE-664 CVE-2021-1592: A vulnerability in the way Cisco UCS Manager software handles SSH sessions could allow an authentica
A vulnerability in the way Cisco UCS Manager software handles SSH sessions could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability is due to improper resource management for established SSH sessions. An attacker could exploit this vulnerability by opening a significant number
nvd
CVE-2015-4259P4MEDIUMCVSS 4.3v1.5\(3\)v1.6\(0.16\)2015-07-10
CVE-2015-4259 [MEDIUM] CWE-310 CVE-2015-4259: The Integrated Management Controller on Cisco Unified Computing System (UCS) C servers with software
The Integrated Management Controller on Cisco Unified Computing System (UCS) C servers with software 1.5(3) and 1.6(0.16) has a default SSL certificate, which makes it easier for man-in-the-middle attackers to bypass cryptographic protection mechanisms by leveraging knowledge of a private key, aka Bug IDs CSCum56133 and CSCum56177.
nvd
CVE-2017-6602P4MEDIUMCVSS 4.4v3.1\(1k\)a2017-04-07
CVE-2017-6602 [MEDIUM] CWE-78 CVE-2017-6602: A vulnerability in the CLI of Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Ser
A vulnerability in the CLI of Cisco Unified Computing System (UCS) Manager, Cisco Firepower 4100 Series Next-Generation Firewall (NGFW), and Cisco Firepower 9300 Security Appliance could allow an authenticated, local attacker to perform a command injection attack. More Information: CSCvb66189 CSCvb86775. Known Affected Releases: 2.0(1.68) 3.1(1k)A. Kno
nvd
CVE-2012-4081P4MEDIUMCVSS 4.6v1.0\(2k\)v1.0_base+15 more2013-09-20
CVE-2012-4081 [MEDIUM] CWE-119 CVE-2012-4081: MCServer in the Cisco Management Controller in Cisco Unified Computing System (UCS) allows local use
MCServer in the Cisco Management Controller in Cisco Unified Computing System (UCS) allows local users to cause a denial of service (application crash) via invalid MCTools parameters, aka Bug ID CSCtg20734.
nvd
← Previous4 / 4