CVE-2012-4136

Cisco Unified Computing System - Information Disclosure and Denial of Service via TELNET Connection

Title source: llm
STIX 2.1

Description

The high-availability service in the Fabric Interconnect component in Cisco Unified Computing System (UCS) does not properly bind the cluster service to the management interface, which allows remote attackers to obtain sensitive information or cause a denial of service (peer-syncing outage) via a TELNET connection, aka Bug ID CSCtz72910.

References (2)

Core 2
Core References
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/54171

Scores

EPSS 0.0116
EPSS Percentile 63.8%

Details

CWE
CWE-264
Status published
Products (1)
cisco/unified_computing_system
Published Oct 03, 2013
Tracked Since Feb 18, 2026