CVE-2012-4104

Published Oct 2, 2013

Last updated 11 years ago

Overview

Description
Absolute path traversal vulnerability in the image-download process in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to overwrite or delete arbitrary files via a full pathname in an image header, aka Bug ID CSCtq02706.
Source
ykramarz@cisco.com
NVD status
Analyzed

Risk scores

CVSS 2.0

Type
Primary
Base score
6.6
Impact score
10
Exploitability score
2.7
Vector string
AV:L/AC:M/Au:S/C:C/I:C/A:C

Weaknesses

nvd@nist.gov
CWE-22

Social media

Hype score
Not currently trending

Configurations