Vulnerability Description
A setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands via invalid parameters, aka Bug ID CSCtg20790.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Unified Computing System | - |
Related Weaknesses (CWE)
References
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-4086Vendor Advisory
- http://www.securitytracker.com/id/1029083Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/87368
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-4086Vendor Advisory
- http://www.securitytracker.com/id/1029083Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/87368
FAQ
What is CVE-2012-4086?
CVE-2012-4086 is a vulnerability with a CVSS score of 5.1 (MEDIUM). A setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands via invalid parameters, aka Bug ID CSCtg20790.
How severe is CVE-2012-4086?
CVE-2012-4086 has been rated MEDIUM with a CVSS base score of 5.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-4086?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Unified Computing System.