Vulnerabilities > Cisco > Hyperflex HX Data Platform > 3.0.1a

DATE CVE VULNERABILITY TITLE RISK
2018-10-05 CVE-2018-15407 Incomplete Cleanup vulnerability in Cisco Hyperflex HX Data Platform 3.0(1A)
A vulnerability in the installation process of Cisco HyperFlex Software could allow an authenticated, local attacker to read sensitive information.
local
low complexity
cisco CWE-459
2.1
2018-10-05 CVE-2018-15382 External Control of Critical State Data vulnerability in Cisco Hyperflex HX Data Platform 3.0(1A)
A vulnerability in Cisco HyperFlex Software could allow an unauthenticated, remote attacker to generate valid, signed session tokens.
network
low complexity
cisco CWE-642
7.5