CVE-2014-0709
Cisco UCS Director < 4.0.0.3 - Unauthenticated Root Access via Hardcoded Password
Title source: llmDescription
Cisco UCS Director (formerly Cloupia) before 4.0.0.3 has a hardcoded password for the root account, which makes it easier for remote attackers to obtain administrative access via an SSH session to the CLI interface, aka Bug ID CSCui73930.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140219-ucsd
Scores
EPSS
0.0184
EPSS Percentile
76.8%
Details
CWE
CWE-255
Status
published
Products (3)
cisco/ucs_director
4.0.0.0
cisco/ucs_director
4.0.0.1
cisco/ucs_director
< 4.0.0.2
Published
Feb 22, 2014
Tracked Since
Feb 18, 2026