Cisco UCS Central Software Command Line Interface CVE-2017-12255 Command Injection Vulnerability

Cisco UCS Central Software is prone to a local command-injection vulnerability because it fails to properly sanitize user-supplied input.

Successfully exploiting this issue may allow an attacker to bypass the CLI restrictions and gain shell access.

This issue is being tracked by Cisco bug ID CSCve70762.


 

Privacy Statement
Copyright 2010, SecurityFocus