Vulnerabilities > Cisco > Unified Computing System Director > Critical

DATE CVE VULNERABILITY TITLE RISK
2018-04-19 CVE-2018-0238 Improper Authentication vulnerability in Cisco Unified Computing System Director 6.5(0.0)/6.5(0.1)
A vulnerability in the role-based resource checking functionality of the Cisco Unified Computing System (UCS) Director could allow an authenticated, remote attacker to view unauthorized information for any virtual machine in the UCS Director end-user portal and perform any permitted operations on any virtual machine.
network
low complexity
cisco CWE-287
critical
9.9