Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
cisco unified computing system software - vulnerabilities and exploits
(subscribe to this query)
3.6
CVSSv2
CVE-2019-1725
A vulnerability in the local management CLI implementation for specific commands on the Cisco UCS B-Series Blade Servers could allow an authenticated, local malicious user to overwrite an arbitrary file on disk. It is also possible the attacker could inject CLI command parameters...
Cisco Unified Computing System
9
CVSSv2
CVE-2018-0238
A vulnerability in the role-based resource checking functionality of the Cisco Unified Computing System (UCS) Director could allow an authenticated, remote malicious user to view unauthorized information for any virtual machine in the UCS Director end-user portal and perform any ...
Cisco Unified Computing System Director 6.5\\(0.1\\)
Cisco Unified Computing System Director 6.5\\(0.0\\)
1 Article
2.1
CVSSv2
CVE-2019-1628
A vulnerability in the web server of Cisco Integrated Management Controller (IMC) could allow an authenticated, local malicious user to cause a buffer overflow, resulting in a denial of service (DoS) condition on an affected device. The vulnerability is due to incorrect bounds ch...
Cisco Integrated Management Controller -
Cisco Unified Computing System 4.0\\(1c\\)hs3
2.1
CVSSv2
CVE-2019-1630
A vulnerability in the firmware signature checking program of Cisco Integrated Management Controller (IMC) could allow an authenticated, local malicious user to cause a buffer overflow, resulting in a denial of service (DoS) condition. The vulnerability is due to insufficient che...
Cisco Integrated Management Controller -
Cisco Unified Computing System 4.0\\(1c\\)hs3
5
CVSSv2
CVE-2019-1631
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote malicious user to access potentially sensitive system usage information. The vulnerability is due to a lack of proper data protection mecha...
Cisco Integrated Management Controller -
Cisco Unified Computing System 4.0\\(1c\\)hs3
6
CVSSv2
CVE-2019-1632
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote malicious user to conduct a cross-site request forgery (CSRF) attack and perform arbitrary actions on an affected device. The vulnerability i...
Cisco Integrated Management Controller -
Cisco Unified Computing System 4.0\\(1c\\)hs3
7.2
CVSSv2
CVE-2019-1879
A vulnerability in the CLI of Cisco Integrated Management Controller (IMC) could allow an authenticated, local malicious user to inject arbitrary commands that are executed with root privileges. The vulnerability is due to insufficient validation of user-supplied input at the CLI...
Cisco Unified Computing System 4.0\\(1c\\)hs3
Cisco Integrated Management Controller -
4
CVSSv2
CVE-2019-1627
A vulnerability in the Server Utilities of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote malicious user to gain unauthorized access to sensitive user information from the configuration data that is stored on the affected system. The vulnerabili...
Cisco Integrated Management Controller -
Cisco Unified Computing System 4.0\\(1c\\)hs3
5
CVSSv2
CVE-2019-1629
A vulnerability in the configuration import utility of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote malicious user to have write access and upload arbitrary data to the filesystem. The vulnerability is due to a failure to delete temporarily ...
Cisco Integrated Management Controller -
Cisco Unified Computing System 4.0\\(1c\\)hs3
3.5
CVSSv2
CVE-2017-12349
Multiple vulnerabilities in the web-based management interface of Cisco UCS Central Software could allow a remote malicious user to conduct a cross-site scripting (XSS) attack against a user of the affected interface or hijack a valid session ID from a user of the affected interf...
Cisco Unified Computing System Central Software 2.2\\(1a\\)a
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
validation
CVE-2012-1823
malicious code
CVE-2024-5770
CVE-2023-45866
CVE-2024-35687
local users
CVE-2024-31246
CVE-2024-35730
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »