6.5
CVSSv3

CVE-2020-3252

Published: 15/04/2020 Updated: 23/04/2020
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote malicious user to bypass authentication or conduct directory traversal attacks on an affected device. For more information about these vulnerabilities, see the Details section of this advisory.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco ucs director 6.0.0.0

cisco ucs director 6.0.0.1

cisco ucs director 6.0.1.0

cisco ucs director 6.0.1.1

cisco ucs director 6.0.1.2

cisco ucs director 6.0.1.3

cisco ucs director 6.5.0.0

cisco ucs director 6.5.0.1

cisco ucs director 6.5.0.2

cisco ucs director 6.5.0.3

cisco ucs director 6.5.0.4

cisco ucs director 6.6.0.0

cisco ucs director 6.6.1.0

cisco ucs director 6.6.2.0

cisco ucs director 6.7.0.0

cisco ucs director 6.7.1.0

cisco ucs director 6.7.2.0

cisco ucs director 6.7.3.0

cisco ucs director express for big data

Vendor Advisories

Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device For more information about these vulnerabilities, see the Details section of this advisory Cisco has released software updates ...