Lucene search

K
nvd[email protected]NVD:CVE-2012-4106
HistoryOct 13, 2013 - 10:20 a.m.

CVE-2012-4106

2013-10-1310:20:02
CWE-264
web.nvd.nist.gov
7

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.5

Confidence

High

EPSS

0

Percentile

5.1%

The fabric-interconnect component in Cisco Unified Computing System (UCS) uses the same privilege level for execution of every script, which allows local users to gain privileges and execute arbitrary commands via an unspecified script-execution approach, aka Bug ID CSCtq86477.

Affected configurations

Nvd
Node
ciscounified_computing_systemMatch-

CVSS2

6.8

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.5

Confidence

High

EPSS

0

Percentile

5.1%

Related for NVD:CVE-2012-4106