Known vulnerabilities in Cisco UCS Central Software
Vendor:
Cisco Systems, Inc
Software:
Cisco UCS Central Software
Software CPE:
cpe:2.3:a:cisco_systems:cisco_ucs_central_software:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
6
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (6)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU98763 - Use of Hard-coded Cryptographic Key CVE-2024-20280 |
CWE-321 | Low | 2.0(1v) | 17.10.2024 |
SB2024101726 |
||
| #VU10407 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2018-0113 |
CWE-78 | Low | - | 08.02.2018 |
SB2018020807 |
||
| #VU10109 - Improper input validation CVE-2018-0094 |
CWE-20 | Low | - | 19.01.2018 |
SB2018011903 |
||
| #VU9470 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2017-12349 |
CWE-79 | Low | - | 30.11.2017 |
SB2017113011 |
||
| #VU9469 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2017-12348 |
CWE-79 | Low | - | 29.11.2017 |
SB2017113011 |
||
| #VU8551 - Command injection CVE-2017-12255 |
CWE-77 | Low | - | 21.09.2017 |
SB2017092105 |