Known vulnerabilities in UCS X-Series Modular System
Vendor:
Cisco Systems, Inc
Software:
UCS X-Series Modular System
Software CPE:
cpe:2.3:a:cisco_systems:ucs_x-series_modular_system:*:*:*:*:*:*:*:*
Website:
https://www.cisco.com
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU114565 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') CVE-2025-20342 |
CWE-79 | Low | 4.2(3o), 4.3(5c) | 29.08.2025 |
SB2025082977 |
||
| #VU114490 - URL Redirection to Untrusted Site ('Open Redirect') CVE-2025-20317 |
CWE-601 | Medium | 4.2(3o), 4.3(5c) | 28.08.2025 |
SB2025082828 |
||
| #VU110234 - Improper Restriction of Communication Channel to Intended Endpoints CVE-2025-20261 |
CWE-923 | Medium | - | 06.06.2025 |
SB2025060637 |
||
| #VU98036 - Command injection CVE-2024-20365 |
CWE-77 | Low | 4.3(4a), 4.3(4d), 5.0(4g), 5.2(2.240053) | 04.10.2024 |
SB2024100420 |