Lucene search

K
cveCiscoCVE-2015-4279
HistoryJul 20, 2015 - 11:59 p.m.

CVE-2015-4279

2015-07-2023:59:04
CWE-78
cisco
web.nvd.nist.gov
24
cisco
ucs
cve-2015-4279
bug id cscut32778
security vulnerability
privilege escalation

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.2

Confidence

Low

EPSS

0

Percentile

9.8%

The Manager component in Cisco Unified Computing System (UCS) 2.2(3b) on B Blade Server devices allows local users to gain privileges for executing arbitrary CLI commands by leveraging access to the subordinate fabric interconnect, aka Bug ID CSCut32778.

Affected configurations

Nvd
Node
ciscounified_computing_systemMatch2.2\(3b\)
VendorProductVersionCPE
ciscounified_computing_system2.2(3b)cpe:2.3:a:cisco:unified_computing_system:2.2\(3b\):*:*:*:*:*:*:*

CVSS2

7.2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.2

Confidence

Low

EPSS

0

Percentile

9.8%

Related for CVE-2015-4279