CVE-2012-4107: Medium severity cisco unified computing system software vulnerability
Published Oct 13, 2013
·Updated
The fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges and execute arbitrary commands via crafted parameters to a file-related command, aka Bug ID CSCtq86489.
Affected Software
1 affected component
Cisco Unified Computing System
Event History
Oct 13, 2013
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-4107?
CVE-2012-4107 has been classified with a high severity due to its potential for privilege escalation.
2
How do I fix CVE-2012-4107?
To mitigate CVE-2012-4107, update the Cisco Unified Computing System software to the latest patched version.
3
Who is affected by CVE-2012-4107?
CVE-2012-4107 affects users with local access to the Cisco Unified Computing System components.
4
What type of vulnerability is CVE-2012-4107?
CVE-2012-4107 is a privilege escalation vulnerability that allows local users to execute arbitrary commands.
5
Is CVE-2012-4107 being actively exploited?
There is currently no indication that CVE-2012-4107 is being actively exploited in the wild.