CVE-2013-1185
9.3
Vector
AV:N/AC:M/Au:N/C:C/I:C/A:C
Exploitability: 8.6 / Impact: 10.0
Source: NVD
Description
The web interface in the Manager component in Cisco Unified Computing System (UCS) 1.x and 2.x before 2.0(2m) allows remote attackers to obtain sensitive information by reading a (1) technical-support bundle file or (2) on-device configuration backup, aka Bug ID CSCtq86543.
Affected (40)
Products: Cisco: Unified Computing System Infrastructure And Unified Computing System Software, Unified Computing System 6120xp Fabric Interconnect, Unified Computing System 6140xp Fabric Interconnect, Unified Computing System 6248up Fabric Interconnect, Unified Computing System 6296up Fabric Interconnect, Unified Computing System Integrated Management Controller
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.0 | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions |
| Running on/with | Platform Versions |
|---|---|
Cisco Unified Computing System Infrastructure And Unified Computing System Software | Version 2.0(1x) |
References (2)
Source: psirt@cisco.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.