Cisco

Unified Computing System

40 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.51%
  • Veröffentlicht 24.09.2013 10:35:51
  • Zuletzt bearbeitet 11.04.2025 00:51:21

A cluster setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands via invalid parameters, aka Bug ID CSCtg20793.

  • EPSS 0.84%
  • Veröffentlicht 24.09.2013 10:35:51
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Buffer overflow in the Smart Call Home feature in the fabric interconnect in Cisco Unified Computing System (UCS) allows remote attackers to cause a denial of service by reading and forging control messages associated with Smart Call Home reports, ak...

  • EPSS 0.13%
  • Veröffentlicht 20.09.2013 18:55:09
  • Zuletzt bearbeitet 11.04.2025 00:51:21

MCTools in the Cisco Management Controller in Cisco Unified Computing System (UCS) allows local users to gain privileges by entering crafted command-line parameters on a Fabric Interconnect device, aka Bug ID CSCtg20749.

  • EPSS 0.12%
  • Veröffentlicht 20.09.2013 16:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Manager component in Cisco Unified Computing System (UCS) allows local users to cause a denial of service via an invalid Smart Call Home contact address, aka Bug ID CSCtl00186.

  • EPSS 0.69%
  • Veröffentlicht 20.09.2013 16:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple buffer overflows in the administrative web interface in Cisco Unified Computing System (UCS) allow remote authenticated users to cause a denial of service (memory corruption and session termination) via long string values for unspecified par...

  • EPSS 0.33%
  • Veröffentlicht 20.09.2013 16:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The Board Management Controller (BMC) in the Serial over LAN (SoL) subsystem in Cisco Unified Computing System (UCS) relies on a hardcoded private key, which allows man-in-the-middle attackers to obtain sensitive information or modify the data stream...

  • EPSS 0.18%
  • Veröffentlicht 20.09.2013 16:55:07
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The KVM subsystem in the client in Cisco Unified Computing System (UCS) does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers, and read or modify KVM data, via a crafted certificate, aka Bug ID...

  • EPSS 0.18%
  • Veröffentlicht 20.09.2013 16:55:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The KVM subsystem in Cisco Unified Computing System (UCS) relies on a hardcoded X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers, and read keyboard and mouse events, by leveraging knowledge of this certificate's privat...

  • EPSS 0.44%
  • Veröffentlicht 02.08.2013 12:10:40
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The C-Series Rack Server component 1.4 in Cisco Unified Computing System (UCS) does not properly restrict inbound access to ports, which allows remote attackers to cause a denial of service (Integrated Management Controller reboot or hang) via crafte...

  • EPSS 0.06%
  • Veröffentlicht 27.10.2011 21:55:00
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Cisco Nexus OS (aka NX-OS) 4.2 and 5.0 and Cisco Unified Computing System with software 1.4 and 2.0 do not properly restrict command-line options, which allows local users to gain privileges via unspecified vectors, aka Bug IDs CSCtf40008, CSCtg18363...