Known vulnerabilities in UCS 6400 Series Fabric Interconnects

Software CPE: cpe:2.3:h:cisco_systems:ucs_6400_series_fabric_interconnects:*:*:*:*:*:*:*:*
Total vulnerabilities: 20
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting UCS 6400 Series Fabric Interconnects UCS 6400 Series Fabric Interconnects is affected by 20 known vulnerabilities: 8 medium, 12 low Critical High Medium Low

Vulnerabilities (20)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU114566 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-20292
CWE-78 Low
No
No
4.2(3p), 4.3(6a) 29.08.2025 SB2025082978
#VU114564 - Exposure of sensitive information to an unauthorized actor
CVE-2025-20290
CWE-200 Low
No
No
4.2(3p), 4.3(6c) 29.08.2025 SB2025082954
#VU114485 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-20295
CWE-78 Low
No
No
- 28.08.2025 SB2025082817
#VU114484 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2025-20294
CWE-78 Low
No
No
- 28.08.2025 SB2025082817
#VU114483 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2025-20296
CWE-79 Low
No
No
- 28.08.2025 SB2025082816
#VU86915 - Memory corruption
CVE-2024-20294
CWE-119 Medium
No
No
4.1(3m), 4.2(3j), 4.3(2b) 29.02.2024 SB2024022925
SB2024061419
SB2024061703
and 1 more
#VU86910 - Resource exhaustion
CVE-2024-20344
CWE-400 Medium
No
No
- 29.02.2024 SB2024022907
#VU72513 - Key Management Errors
CVE-2023-20016
CWE-320 Low
No
No
- 23.02.2023 SB2023022317
#VU72511 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-20015
CWE-78 Low
No
No
- 23.02.2023 SB2023022311
#VU72510 - Improper Authentication
CVE-2023-20012
CWE-287 Low
No
No
- 23.02.2023 SB2023022310
#VU56875 - Improper input validation
CVE-2021-34714
CWE-20 Medium
No
No
- 24.09.2021 SB2021092427
#VU56099 - Resource Management Errors
CVE-2021-1592
CWE-399 Medium
No
No
4.0.4m, 4.1.3e 25.08.2021 SB2021082525
#VU50951 - Out-of-bounds write
CVE-2021-1368
CWE-787 Medium
No
No
4.0.4l, 4.1.2c 25.02.2021 SB2021022527
#VU50943 - Missing release of memory after effective lifetime
CVE-2021-1387
CWE-401 Medium
No
No
8.4.2a 25.02.2021 SB2021022520
#VU46104 - NULL Pointer Dereference
CVE-2020-3517
CWE-476 Medium
No
No
4.0.4i UCSM, 4.1.1c UCSM, 4.1.2a UCSM 27.08.2020 SB2020082717
#VU46103 - Out-of-bounds write
CVE-2020-3415
CWE-787 Medium
No
No
4.0.4h, 4.0.4i 27.08.2020 SB2020082721
#VU46100 - Improper input validation
CVE-2020-3504
CWE-20 Low
No
No
- 27.08.2020 SB2020082714
#VU25647 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2020-3173
CWE-78 Low
No
No
- 27.02.2020 SB2020022706
#VU25009 - Out-of-bounds write
CVE-2020-3119
CWE-787 Low
No
No
3.2.3m, 4.0.4f 06.02.2020 SB2020020610
#VU49026 - Integer overflow
CVE-2020-3120
CWE-190 Low
No
No
3.2.3n, 4.0.4g 05.02.2020 SB2020020539