Vulnerabilities > Cisco > UCS Manager > High

DATE CVE VULNERABILITY TITLE RISK
2020-02-26 CVE-2020-3173 OS Command Injection vulnerability in Cisco UCS Manager
A vulnerability in the local management (local-mgmt) CLI of Cisco UCS Manager Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system (OS) on an affected device.
local
low complexity
cisco CWE-78
7.8
2020-02-26 CVE-2020-3172 Improper Input Validation vulnerability in Cisco Firepower Extensible Operating System
A vulnerability in the Cisco Discovery Protocol feature of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to execute arbitrary code as root or cause a denial of service (DoS) condition on an affected device.
low complexity
cisco CWE-20
8.8
2020-02-26 CVE-2020-3171 OS Command Injection vulnerability in Cisco Fxos and UCS Manager
A vulnerability in the local management (local-mgmt) CLI of Cisco FXOS Software and Cisco UCS Manager Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system (OS) of an affected device.
local
low complexity
cisco CWE-78
7.8
2020-02-26 CVE-2020-3167 OS Command Injection vulnerability in Cisco products
A vulnerability in the CLI of Cisco FXOS Software and Cisco UCS Manager Software could allow an authenticated, local attacker to execute arbitrary commands on the underlying operating system (OS).
local
low complexity
cisco CWE-78
7.8
2020-02-05 CVE-2020-3119 Out-of-bounds Write vulnerability in Cisco Nx-Os
A vulnerability in the Cisco Discovery Protocol implementation for Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to execute arbitrary code or cause a reload on an affected device.
low complexity
cisco CWE-787
8.8