Cisco UCS Invicta C3124SA Appliance 4.3.1 through 5.0.1, UCS Invicta Scaling System and Appliance, and Whiptail Racerunner improperly store a default SSH private key, which allows remote attackers to obtain root access via unspecified vectors, aka Bug ID CSCun71294.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ucs_invicta_c3124sa_appliance | Cisco | 4.3.1 (including) | 4.3.1 (including) |
Ucs_invicta_c3124sa_appliance | Cisco | 4.5.0 (including) | 4.5.0 (including) |
Ucs_invicta_c3124sa_appliance | Cisco | 5.0.1 (including) | 5.0.1 (including) |