Vulnerabilities > Cisco > Virtualization Experience Client 6000 Series Firmware

DATE CVE VULNERABILITY TITLE RISK
2015-06-17 CVE-2015-4186 OS Command Injection vulnerability in Cisco Virtualization Experience Client 6000 Series Firmware 11.2(27.4)
The diagnostics subsystem in the administrative web interface on Cisco Virtualization Experience (aka VXC) Client 6215 devices with firmware 11.2(27.4) allows local users to gain privileges for OS command execution via a crafted option value, aka Bug ID CSCug54412.
local
low complexity
cisco CWE-78
7.2
2013-09-13 CVE-2013-5493 Improper Input Validation vulnerability in Cisco products
The diagnostic module in the firmware on Cisco Virtualization Experience Client 6000 devices allows local users to bypass intended access restrictions and execute arbitrary commands via unspecified vectors, aka Bug ID CSCug68407.
local
low complexity
cisco CWE-20
6.8
2013-07-10 CVE-2013-3408 Permissions, Privileges, and Access Controls vulnerability in Cisco products
The firmware on Cisco Virtualization Experience Client 6000 devices sets incorrect operating-system permissions, which allows local users to gain privileges via an unspecified sequence of commands, aka Bug ID CSCuc31764.
local
low complexity
cisco CWE-264
6.8