9.4
CVSSv2

CVE-2015-6259

Published: 04/09/2015 Updated: 29/12/2016
CVSS v2 Base Score: 9.4 | Impact Score: 9.2 | Exploitability Score: 10
VMScore: 837
Vector: AV:N/AC:L/Au:N/C:N/I:C/A:C

Vulnerability Summary

The JavaServer Pages (JSP) component in Cisco Integrated Management Controller (IMC) Supervisor prior to 1.0.0.1 and UCS Director (formerly Cloupia Unified Infrastructure Controller) prior to 5.2.0.1 allows remote malicious users to write to arbitrary files via crafted HTTP requests, aka Bug IDs CSCus36435 and CSCus62625.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco integrated management controller supervisor

cisco unified computing system director 4.0_base

cisco unified computing system director 5.0.0.0

cisco unified computing system director

cisco unified computing system director 5.0.0.1

cisco unified computing system director 5.0.0.2

cisco unified computing system director 5.0.0.3

cisco unified computing system director 5.1.0.1

cisco unified computing system director 3.4_base

cisco unified computing system director 4.1_base

cisco unified computing system director 5.1.0.0