CVE-2012-4086
Description
A setup script for fabric interconnect devices in Cisco Unified Computing System (UCS) allows remote attackers to execute arbitrary commands via invalid parameters, aka Bug ID CSCtg20790.
Risk Information
Base Score
9.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
0.637
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Cisco Unified Computing System Fabric Interconnect Devices Arbitrary Command Execution Vulnerability For Cisco Unified Computing System | NCM |
| Improper Neutralization of Special Elements used in a Command (Command Injection) Vulnerability (CVE-2012-4086) | NCM |
Patch Details
Click to see the patches provided by ManageEngine for this CVE
| Patch ID | Patch Description |
|---|---|
| PATCH-1706036 | Security Update for Cisco Unified Computing System 3.2(1d) |
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234