CVE-2012-4095: Input Validation
The local file editor in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges, and read or modify arbitrary files, via unspecified key bindings, aka Bug ID CSCtn04521.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4095?
CVE-2012-4095 is classified as a high severity vulnerability that allows local users to gain elevated privileges.
How do I fix CVE-2012-4095?
To fix CVE-2012-4095, apply the latest software updates provided by Cisco for the Unified Computing System.
Who is affected by CVE-2012-4095?
CVE-2012-4095 affects users of Cisco Unified Computing System software with access to the local file editor.
What are the potential consequences of CVE-2012-4095?
Exploitation of CVE-2012-4095 could allow an attacker to read or modify arbitrary files on the system.
Is there a workaround for CVE-2012-4095?
There are no reported workarounds for CVE-2012-4095, so updating the software is the recommended action.