
CVE-2015-4183
https://notcve.org/view.php?id=CVE-2015-4183
17 Jun 2015 — Cisco UCS Central Software 1.2(1a) allows local users to gain privileges for OS command execution via a crafted CLI parameter, aka Bug ID CSCut32795. Cisco UCS Central Software 1.2(1a) permite a usuarios locales ganar privilegios para la ejecución de comandos del sistema operativo a través de un parámetro CLI manipulado, también conocido como Bug ID CSCut32795. • http://tools.cisco.com/security/center/viewAlert.x?alertId=39324 • CWE-78: Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') •

CVE-2015-0633
https://notcve.org/view.php?id=CVE-2015-0633
26 Feb 2015 — The Integrated Management Controller (IMC) in Cisco Unified Computing System (UCS) 1.4(7h) and earlier on C-Series servers allows remote attackers to bypass intended access restrictions by sending crafted DHCP response packets on the local network, aka Bug ID CSCuf52876. Integrated Management Controller (IMC) en Cisco Unified Computing System (UCS) 1.4(7h) y anteriores en los servidores de la serie C permite a atacantes remotos evadir las restricciones de acceso mediante el envío de paquetes manipulados de ... • http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2015-0633 • CWE-20: Improper Input Validation •

CVE-2014-8003
https://notcve.org/view.php?id=CVE-2014-8003
10 Dec 2014 — Cisco Integrated Management Controller in Cisco Unified Computing System 2.2(2c)A and earlier allows local users to obtain shell access via a crafted map-nfs command, aka Bug ID CSCup05998. Cisco Integrated Management Controller en Cisco Unified Computing System 2.2(2c)A y anteriores permite a usuarios locales obtener acceso de shell a través de un comando map-nfs manipulado, también conocido como Bug ID CSCup05998. • http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-8003 • CWE-20: Improper Input Validation •

CVE-2014-8009 – Cisco UCSM 2.2 Username / Password Disclosure
https://notcve.org/view.php?id=CVE-2014-8009
10 Dec 2014 — The Management subsystem in Cisco Unified Computing System 2.1(3f) and earlier allows remote attackers to obtain sensitive information by reading log files, aka Bug ID CSCur99239. El subsistema Management en Cisco Unified Computing System 2.1(3f) y anteriores permite a atacantes remotos obtener información sensible mediante la lectura de ficheros del registro, también conocido como Bug ID CSCur99239. Cisco Unified Computing System Manager (UCSM) versions 1.3 through 2.2 sends local (UCSM) username and passw... • https://packetstorm.news/files/id/130971 • CWE-200: Exposure of Sensitive Information to an Unauthorized Actor •

CVE-2012-4078
https://notcve.org/view.php?id=CVE-2012-4078
24 Sep 2013 — The Baseboard Management Controller (BMC) in Cisco Unified Computing System (UCS) does not properly handle SSH escape sequences, which allows remote authenticated users to bypass an unspecified authentication step via SSH port forwarding, aka Bug ID CSCtg17656. El Baseboard Management Controller (BMC) en Cisco Unified Computing System (UCS) no maneja correctamente secuencias de escape SSH, lo cual permite a usuarios autenticados remotamente saltarse un paso no especificado de autentificación a través del re... • http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-4078 • CWE-287: Improper Authentication •

CVE-2012-4081
https://notcve.org/view.php?id=CVE-2012-4081
20 Sep 2013 — MCServer in the Cisco Management Controller in Cisco Unified Computing System (UCS) allows local users to cause a denial of service (application crash) via invalid MCTools parameters, aka Bug ID CSCtg20734. MCServer en Cisco Management Controller de Cisco Unified Computing System (UCS) permite a usuarios locales causar una denegación de servicio (cuelgue de aplicación) a través de parámetros inválidos de MCTools, tambien conocido como Bug ID CSCtg20734. • http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-4081 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •