Lucene search

K
nvd[email protected]NVD:CVE-2013-1185
HistoryApr 25, 2013 - 10:55 a.m.

CVE-2013-1185

2013-04-2510:55:01
CWE-200
web.nvd.nist.gov
4

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.1

Confidence

Low

EPSS

0.004

Percentile

72.9%

The web interface in the Manager component in Cisco Unified Computing System (UCS) 1.x and 2.x before 2.0(2m) allows remote attackers to obtain sensitive information by reading a (1) technical-support bundle file or (2) on-device configuration backup, aka Bug ID CSCtq86543.

Affected configurations

Nvd
Node
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.0
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.0\(2k\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.1
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.1\(1m\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.2
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.2\(1\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.2\(1a\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.2\(1d\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.3\(1c\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.3\(1m\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.3\(1n\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.3\(1o\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.3\(1p\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.3\(1q\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.3\(1t\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.3\(1w\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.3\(1y\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(1j\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(1m\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(3i\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(3l\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(3m\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(3q\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(3s\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(3u\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(3y\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(4f\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(4g\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(4i\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(4j\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch1.4\(4k\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch2.0\(1q\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch2.0\(1s\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch2.0\(1t\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch2.0\(1w\)
OR
ciscounified_computing_system_infrastructure_and_unified_computing_system_softwareMatch2.0\(1x\)
AND
ciscounified_computing_system_6120xp_fabric_interconnectMatch-
OR
ciscounified_computing_system_6140xp_fabric_interconnectMatch-
OR
ciscounified_computing_system_6248up_fabric_interconnectMatch-
OR
ciscounified_computing_system_6296up_fabric_interconnectMatch-
OR
ciscounified_computing_system_integrated_management_controllerMatch-
VendorProductVersionCPE
ciscounified_computing_system_infrastructure_and_unified_computing_system_software1.0cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.0:*:*:*:*:*:*:*
ciscounified_computing_system_infrastructure_and_unified_computing_system_software1.0(2k)cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.0\(2k\):*:*:*:*:*:*:*
ciscounified_computing_system_infrastructure_and_unified_computing_system_software1.1cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.1:*:*:*:*:*:*:*
ciscounified_computing_system_infrastructure_and_unified_computing_system_software1.1(1m)cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.1\(1m\):*:*:*:*:*:*:*
ciscounified_computing_system_infrastructure_and_unified_computing_system_software1.2cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.2:*:*:*:*:*:*:*
ciscounified_computing_system_infrastructure_and_unified_computing_system_software1.2(1)cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.2\(1\):*:*:*:*:*:*:*
ciscounified_computing_system_infrastructure_and_unified_computing_system_software1.2(1a)cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.2\(1a\):*:*:*:*:*:*:*
ciscounified_computing_system_infrastructure_and_unified_computing_system_software1.2(1d)cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.2\(1d\):*:*:*:*:*:*:*
ciscounified_computing_system_infrastructure_and_unified_computing_system_software1.3(1c)cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3\(1c\):*:*:*:*:*:*:*
ciscounified_computing_system_infrastructure_and_unified_computing_system_software1.3(1m)cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3\(1m\):*:*:*:*:*:*:*
Rows per page:
1-10 of 411

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.1

Confidence

Low

EPSS

0.004

Percentile

72.9%