Two command injection bugs in Cisco UCS Manager let an already-authenticated admin escalate to root or tamper with system files on the fabric interconnect’s underlying OS.
Posts tagged: Cisco
Cisco Integrated Management Controller Virtual Keyboard Video Monitor Open Redirect Vulnerability
An open redirect in the vKVM component of Cisco IMC and UCS Manager lets an attacker lure an admin into clicking a link that redirects their session to a credential-harvesting page.
Cisco UCS Manager Software Stored Cross-Site Scripting Vulnerability
A stored XSS flaw in Cisco UCS Manager’s web interface lets an Administrator or AAA Administrator plant script that runs in another admin’s browser session on the fabric interconnect.
Cisco Nexus 3000 and 9000 Series Switches Intermediate System-to-Intermediate System Denial of Service Vulnerability
An unauthenticated but Layer 2-adjacent IS-IS peer can send a crafted packet to a Nexus 3000 or 9000 switch in standalone NX-OS mode and force the IS-IS process, and potentially the whole switch, to reload.
Cisco Evolved Programmable Network Manager and Cisco Prime Infrastructure Sensitive Information Disclosure Vulnerability
A path-traversal flaw in the web interface of Cisco EPNM and Prime Infrastructure lets an authenticated, low-privileged user pull arbitrary files off the underlying server filesystem.
Cisco Duo Authentication Proxy Information Disclosure Vulnerability
A privileged attacker who can already read logs on a Duo Authentication Proxy host may find sensitive data left unmasked in debug log files, exposing confidentiality-sensitive information.
Cisco Identity Services Engine Arbitrary File Upload Vulnerability
An authenticated ISE administrator can abuse a flaw in the GUI’s file copy feature to write arbitrary files to the underlying device, with no workaround available.
Cisco IOS and IOS XE Software Smart Install Remote Code Execution Vulnerability
An unauthenticated attacker who can reach TCP port 4786 on a Cisco switch running Smart Install client mode can crash it or run arbitrary code, with no credentials or workaround available.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Web Services Denial of Service Vulnerability
An unauthenticated attacker can crash a Cisco ASA or FTD firewall with a single crafted HTTP request to its web management interface or REST API, forcing a reload with no login required.
Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Access Control Rules Bypass Vulnerability
On Cisco ASA and FTD devices with a loopback interface configured, access control rules meant to block certain traffic can be bypassed, letting unauthenticated remote traffic reach that interface anyway.