CVE Vulnerabilities

CVE-2016-6402

Published: Sep 18, 2016 | Modified: Jul 30, 2017
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

UCS Manager and UCS 6200 Fabric Interconnects in Cisco Unified Computing System (UCS) through 3.0(2d) allow local users to obtain OS root access via crafted CLI input, aka Bug ID CSCuz91263.

Affected Software

Name Vendor Start Version End Version
Unified_computing_system Cisco 2.2(1b) 2.2(1b)
Unified_computing_system Cisco 2.2(1c) 2.2(1c)
Unified_computing_system Cisco 2.2(1d) 2.2(1d)
Unified_computing_system Cisco 2.2(1e) 2.2(1e)
Unified_computing_system Cisco 2.2(1f) 2.2(1f)
Unified_computing_system Cisco 2.2(1g) 2.2(1g)
Unified_computing_system Cisco 2.2(1h) 2.2(1h)
Unified_computing_system Cisco 2.2(2c) 2.2(2c)
Unified_computing_system Cisco 2.2(2c)a 2.2(2c)a
Unified_computing_system Cisco 2.2(2d) 2.2(2d)
Unified_computing_system Cisco 2.2(2e) 2.2(2e)
Unified_computing_system Cisco 2.2(3a) 2.2(3a)
Unified_computing_system Cisco 2.2(3b) 2.2(3b)
Unified_computing_system Cisco 2.2(3c) 2.2(3c)
Unified_computing_system Cisco 2.2(3d) 2.2(3d)
Unified_computing_system Cisco 2.2(3e) 2.2(3e)
Unified_computing_system Cisco 2.2(3f) 2.2(3f)
Unified_computing_system Cisco 2.2(3g) 2.2(3g)
Unified_computing_system Cisco 2.2(4b) 2.2(4b)
Unified_computing_system Cisco 2.2(4c) 2.2(4c)
Unified_computing_system Cisco 2.2(5a) 2.2(5a)
Unified_computing_system Cisco 2.2(5b)a 2.2(5b)a
Unified_computing_system Cisco 2.2_base 2.2_base
Unified_computing_system Cisco 3.0(1c) 3.0(1c)
Unified_computing_system Cisco 3.0(1d) 3.0(1d)
Unified_computing_system Cisco 3.0(1e) 3.0(1e)
Unified_computing_system Cisco 3.0(2c) 3.0(2c)
Unified_computing_system Cisco 3.0(2d) 3.0(2d)

References