CVE-2012-4078: High severity cisco unified computing system software vulnerability
The Baseboard Management Controller (BMC) in Cisco Unified Computing System (UCS) does not properly handle SSH escape sequences, which allows remote authenticated users to bypass an unspecified authentication step via SSH port forwarding, aka Bug ID CSCtg17656.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4078?
CVE-2012-4078 is classified as a medium severity vulnerability.
How do I fix CVE-2012-4078?
To mitigate CVE-2012-4078, update your Cisco Unified Computing System software to the latest version that addresses this vulnerability.
What type of attack does CVE-2012-4078 facilitate?
CVE-2012-4078 allows remote authenticated users to bypass an unspecified authentication step via SSH port forwarding.
Which Cisco Unified Computing System versions are affected by CVE-2012-4078?
CVE-2012-4078 affects Cisco Unified Computing System versions 1.0(2k), 1.0_base, 1.1(1m), and 1.1_base.
Is CVE-2012-4078 a local or remote vulnerability?
CVE-2012-4078 is a remote vulnerability that requires authenticated access to exploit.