CVE-2012-4110: Input Validation
run-script in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges by embedding commands in an unspecified parameter, aka Bug ID CSCtq86560.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4110?
CVE-2012-4110 is categorized as a high-severity vulnerability due to its potential to allow local users to gain elevated privileges.
How do I fix CVE-2012-4110?
To mitigate CVE-2012-4110, it is recommended to apply the latest patches provided by Cisco for the Unified Computing System software.
Who is affected by CVE-2012-4110?
CVE-2012-4110 affects local users of Cisco Unified Computing System software, allowing them to exploit the vulnerability.
What types of attacks can be executed through CVE-2012-4110?
Through CVE-2012-4110, local attackers can potentially execute arbitrary commands with elevated privileges.
Is there a workaround for CVE-2012-4110?
Currently, there are no specified workarounds for CVE-2012-4110; applying the latest security patches is the primary mitigation strategy.