Cisco / Unified Computing System Central Software
12 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2021-1354 | Cisco Unified Computing System Central Software Improper Certificate Validation Vulnerability | MEDIUM | 4.3 | Feb 4, 2021 |
| CVE-2018-0113 | A vulnerability in an operations script of Cisco UCS Central could allow an authenticated, remote attacker to execute arbitrary shell commands with the privile… | HIGH | 8.8 | Feb 8, 2018 |
| CVE-2018-0094 | A vulnerability in IPv6 ingress packet processing for Cisco UCS Central Software could allow an unauthenticated, remote attacker to cause a denial of service (… | HIGH | 7.5 | Jan 18, 2018 |
| CVE-2017-12349 | Multiple vulnerabilities in the web-based management interface of Cisco UCS Central Software could allow a remote attacker to conduct a cross-site scripting (X… | MEDIUM | 5.4 | Nov 30, 2017 |
| CVE-2017-12348 | Multiple vulnerabilities in the web-based management interface of Cisco UCS Central Software could allow a remote attacker to conduct a cross-site scripting (X… | MEDIUM | 5.4 | Nov 30, 2017 |
| CVE-2016-1401 | Cross-site scripting (XSS) vulnerability in the management interface in Cisco Unified Computing System (UCS) Central Software 1.4(1a) allows remote attackers t… | MEDIUM | 6.1 | May 21, 2016 |
| CVE-2016-1352 | Cisco Unified Computing System (UCS) Central Software 1.3(1b) and earlier allows remote attackers to execute arbitrary OS commands via a crafted HTTP request,… | CRITICAL | 9.8 | Apr 14, 2016 |
| CVE-2015-6388 | Cisco Unified Computing System (UCS) Central software 1.3(0.1) allows remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted requ… | MEDIUM | 5.0 | Dec 5, 2015 |
| CVE-2015-6387 | Cross-site scripting (XSS) vulnerability in Cisco Unified Computing System (UCS) Central Software 1.3(0.1) allows remote attackers to inject arbitrary web scri… | MEDIUM | 4.3 | Dec 5, 2015 |
| CVE-2015-4286 | The web framework in Cisco UCS Central Software 1.3(0.99) allows remote attackers to read arbitrary files via a crafted HTTP request, aka Bug ID CSCuu41377. | MEDIUM | 5.0 | Jul 29, 2015 |
| CVE-2015-0701 | Cisco UCS Central Software before 1.3(1a) allows remote attackers to execute arbitrary commands via a crafted HTTP request, aka Bug ID CSCut46961. | HIGH | 10.0 | May 7, 2015 |
| CVE-2014-0730 | Cisco Unified Computing System (UCS) Central Software 1.1 and earlier allows local users to gain privileges via a CLI copy command in a local-mgmt context, aka… | MEDIUM | 6.8 | Feb 22, 2014 |
Showing 1 to 12 of 12 CVEs