Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.106734
Kategorie:CISCO
Titel:Cisco UCS Manager Debug Plug-in Privilege Escalation Vulnerability
Zusammenfassung:A vulnerability in the debug plug-in functionality of the Cisco Unified;Computing System (UCS) Manager could allow an authenticated, local attacker to execute arbitrary commands.
Beschreibung:Summary:
A vulnerability in the debug plug-in functionality of the Cisco Unified
Computing System (UCS) Manager could allow an authenticated, local attacker to execute arbitrary commands.

Vulnerability Insight:
The vulnerability is due to inadequate integrity checks for the debug
plug-in. An attacker could exploit this vulnerability by crafting a debug plug-in and loading it using elevated
privileges.

Vulnerability Impact:
An exploit could allow the attacker to run malicious code that would allow
for the execution of arbitrary commands as root.

Solution:
See the referenced vendor advisory for a solution.

CVSS Score:
7.2

CVSS Vector:
AV:L/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2017-6598
BugTraq ID: 97429
http://www.securityfocus.com/bid/97429
http://www.securitytracker.com/id/1038198
CopyrightCopyright (C) 2017 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.