5
CVSSv2

CVE-2014-3348

Published: 10/09/2014 Updated: 29/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The SSH module in the Integrated Management Controller (IMC) prior to 2.3.1 in Cisco Unified Computing System on E-Series blade servers allows remote malicious users to cause a denial of service (IMC hang) via a crafted SSH packet, aka Bug ID CSCuo69206.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco integrated_management_controller

cisco unified_computing_system_e140s_m1 -

cisco unified_computing_system_e140s_m2 -

cisco unified_computing_system_en120s_m2 -

cisco unified_computing_system_e140d -

cisco unified_computing_system_e140dp -

cisco unified_computing_system_e160d -

cisco unified_computing_system_e160dp -

Vendor Advisories

A vulnerability in the Cisco Integrated Management Controller (Cisco IMC) SSH module of the Cisco Unified Computing System E-Series Blade servers could allow an unauthenticated, remote attacker to cause a denial of service condition The vulnerability is due to a failure to properly handle a crafted SSH packet An attacker could exploit this vulne ...
A vulnerability in the Cisco Integrated Management Controller (Cisco IMC) SSH module of the Cisco Unified Computing System E-Series Blade servers could allow an unauthenticated, remote attacker to cause a denial of service condition The vulnerability is due to a failure to properly handle a crafted SSH packet An attacker could exploit this vulne ...