Vulnerabilities > Cisco > UCS E160D M2

DATE CVE VULNERABILITY TITLE RISK
2019-08-21 CVE-2019-1863 Unspecified vulnerability in Cisco products
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Software could allow an authenticated, remote attacker to make unauthorized changes to the system configuration.
network
low complexity
cisco
critical
9.0
2019-08-21 CVE-2019-1634 OS Command Injection vulnerability in Cisco products
A vulnerability in the Intelligent Platform Management Interface (IPMI) of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to inject arbitrary commands that are executed with root privileges on the underlying operating system (OS).
network
low complexity
cisco CWE-78
critical
9.0
2018-06-21 CVE-2018-0362 Improper Authentication vulnerability in Cisco products
A vulnerability in BIOS authentication management of Cisco 5000 Series Enterprise Network Compute System and Cisco Unified Computing (UCS) E-Series Servers could allow an unauthenticated, local attacker to bypass the BIOS authentication and execute actions as an unprivileged user.
local
low complexity
cisco CWE-287
4.6