The management interface in the Central Software component in Cisco Unified Computing System (UCS) does not properly validate the identity of vCenter consoles, which allows man-in-the-middle malicious users to read or modify an inter-device data stream by spoofing an identity, aka Bug ID CSCtk00683.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cisco unified computing system - |