Vulnerability Description
A cluster setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands via invalid parameters, aka Bug ID CSCtg20793.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Unified Computing System | - |
Related Weaknesses (CWE)
References
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-4087Vendor Advisory
- http://www.securitytracker.com/id/1029086Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/87371
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-4087Vendor Advisory
- http://www.securitytracker.com/id/1029086Third Party AdvisoryVDB Entry
- https://exchange.xforce.ibmcloud.com/vulnerabilities/87371
FAQ
What is CVE-2012-4087?
CVE-2012-4087 is a vulnerability with a CVSS score of 5.1 (MEDIUM). A cluster setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands via invalid parameters, aka Bug ID CSCtg20793.
How severe is CVE-2012-4087?
CVE-2012-4087 has been rated MEDIUM with a CVSS base score of 5.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2012-4087?
Check the references section above for vendor advisories and patch information. Affected products include: Cisco Unified Computing System.