Vulnerabilities > Cisco > Unified Computing System Central Software > 1.0.base

DATE CVE VULNERABILITY TITLE RISK
2021-02-04 CVE-2021-1354 Improper Certificate Validation vulnerability in Cisco Unified Computing System Central Software
A vulnerability in the certificate registration process of Cisco Unified Computing System (UCS) Central Software could allow an authenticated, adjacent attacker to register a rogue Cisco Unified Computing System Manager (UCSM).
low complexity
cisco CWE-295
3.5
2015-05-07 CVE-2015-0701 Improper Input Validation vulnerability in Cisco Unified Computing System Central Software
Cisco UCS Central Software before 1.3(1a) allows remote attackers to execute arbitrary commands via a crafted HTTP request, aka Bug ID CSCut46961.
network
low complexity
cisco CWE-20
critical
10.0
2014-02-22 CVE-2014-0730 Improper Input Validation vulnerability in Cisco Unified Computing System Central Software
Cisco Unified Computing System (UCS) Central Software 1.1 and earlier allows local users to gain privileges via a CLI copy command in a local-mgmt context, aka Bug ID CSCul53128.
local
low complexity
cisco CWE-20
6.8