Known vulnerabilities in UCS C-Series M7 Rack Servers
Vendor:
Cisco Systems, Inc
Software:
UCS C-Series M7 Rack Servers
Software CPE:
cpe:2.3:a:cisco_systems:ucs_c-series_m7_rack_servers:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
3
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114565 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2025-20342 |
CWE-79 | Low | 4.2(3o), 4.3(5c), 4.3(5.250001) | 29.08.2025 |
SB2025082977 |
||
| #VU114490 - URL Redirection to Untrusted Site ('Open Redirect') CVE-2025-20317 |
CWE-601 | Medium | 4.2(3o), 4.3(5c), 4.3(5.250001) | 28.08.2025 |
SB2025082828 |
||
| #VU88805 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2024-20356 |
CWE-78 | Low | - | 18.04.2024 |
SB2024041816 |