Vulnslist

find the latest Cisco vulnerabilities

Cisco Integrated Management Controller Supervisor and Cisco UCS Director Remote File Overwrite Vulnerability

cisco-sa-20150902-cimcs · High · Published · Updated

Cisco Integrated Management Controller (IMC) Supervisor and Cisco UCS Director contain a remote file overwrite vulnerability that could allow an unauthenticated, remote attacker to overwrite arbitrary system files, resulting in system instability or a denial of service (DoS) condition. Cisco has released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available. This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20150902-cimcs

Cisco advisory · CSAF JSON

Workarounds

There are no workarounds.

CVEsCVE-2015-6259
Cisco Bug IDsCSCus36435, CSCus62625
CVSS ScoreBase 7.8
Base 7.8 AV:N/AC:L/Au:N/C:N/I:C/A:N/E:F/RL:OF/RC:C
Product Names From Source
Cisco UCS Director, Cisco Integrated Management Controller (IMC) Supervisor

Related Products

Product CVE Evidence
Cisco UCS Director CVE-2015-6259 Cisco OpenVuln
Cisco Integrated Management Controller (IMC) Supervisor CVE-2015-6259 Cisco OpenVuln