Vulnerabilities > Cisco > Unified Computing System Central Software > 1.3.0.99

DATE CVE VULNERABILITY TITLE RISK
2021-02-04 CVE-2021-1354 Improper Certificate Validation vulnerability in Cisco Unified Computing System Central Software
A vulnerability in the certificate registration process of Cisco Unified Computing System (UCS) Central Software could allow an authenticated, adjacent attacker to register a rogue Cisco Unified Computing System Manager (UCSM).
low complexity
cisco CWE-295
3.5
2015-07-29 CVE-2015-4286 Improper Input Validation vulnerability in Cisco Unified Computing System Central Software 1.3(0.99)
The web framework in Cisco UCS Central Software 1.3(0.99) allows remote attackers to read arbitrary files via a crafted HTTP request, aka Bug ID CSCuu41377.
network
low complexity
cisco CWE-20
5.0