Vulnerabilities (CVE)

Filtered by vendor Cisco Subscribe
Filtered by product Unified Computing System Central Software
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-6387 1 Cisco 1 Unified Computing System Central Software 2017-09-14 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Cisco Unified Computing System (UCS) Central Software 1.3(0.1) allows remote attackers to inject arbitrary web script or HTML via a crafted value in a URL, aka Bug ID CSCux33573.
CVE-2015-6388 1 Cisco 1 Unified Computing System Central Software 2016-12-07 5.0 MEDIUM N/A
Cisco Unified Computing System (UCS) Central software 1.3(0.1) allows remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted request, aka Bug ID CSCux33575.
CVE-2015-0701 1 Cisco 1 Unified Computing System Central Software 2016-11-28 10.0 HIGH N/A
Cisco UCS Central Software before 1.3(1a) allows remote attackers to execute arbitrary commands via a crafted HTTP request, aka Bug ID CSCut46961.
CVE-2015-4286 1 Cisco 1 Unified Computing System Central Software 2015-09-03 5.0 MEDIUM N/A
The web framework in Cisco UCS Central Software 1.3(0.99) allows remote attackers to read arbitrary files via a crafted HTTP request, aka Bug ID CSCuu41377.
CVE-2014-0730 1 Cisco 1 Unified Computing System Central Software 2014-02-24 6.8 MEDIUM N/A
Cisco Unified Computing System (UCS) Central Software 1.1 and earlier allows local users to gain privileges via a CLI copy command in a local-mgmt context, aka Bug ID CSCul53128.