Vulnerabilities > Cisco > UCS Director Express FOR BIG Data > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-05-06 CVE-2020-3329 Unspecified vulnerability in Cisco products
A vulnerability in role-based access control of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS Director Express for Big Data could allow a read-only authenticated, remote attacker to disable user accounts on an affected system.
network
low complexity
cisco
4.3
2020-04-15 CVE-2020-3252 Path Traversal vulnerability in Cisco UCS Director and UCS Director Express for BIG Data
Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote attacker to bypass authentication or conduct directory traversal attacks on an affected device.
network
low complexity
cisco CWE-22
6.5