Known vulnerabilities in UCS X-Series Direct Fabric Interconnect 9108 100G
Vendor:
Cisco Systems, Inc
Software CPE:
cpe:2.3:h:cisco_systems:ucs_x-series_direct_fabric_interconnect_9108_100g:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
5
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114566 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2025-20292 |
CWE-78 | Low | 4.3(6c) | 29.08.2025 |
SB2025082978 |
||
| #VU114564 - Exposure of sensitive information to an unauthorized actor CVE-2025-20290 |
CWE-200 | Low | 4.3(6c) | 29.08.2025 |
SB2025082954 |
||
| #VU114485 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2025-20295 |
CWE-78 | Low | - | 28.08.2025 |
SB2025082817 |
||
| #VU114484 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2025-20294 |
CWE-78 | Low | - | 28.08.2025 |
SB2025082817 |
||
| #VU114483 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2025-20296 |
CWE-79 | Low | - | 28.08.2025 |
SB2025082816 |