First published: Wed Oct 02 2013(Updated: )
run-script in the fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges by embedding commands in an unspecified parameter, aka Bug ID CSCtq86560.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Computing System software |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-4110 is categorized as a high-severity vulnerability due to its potential to allow local users to gain elevated privileges.
To mitigate CVE-2012-4110, it is recommended to apply the latest patches provided by Cisco for the Unified Computing System software.
CVE-2012-4110 affects local users of Cisco Unified Computing System software, allowing them to exploit the vulnerability.
Through CVE-2012-4110, local attackers can potentially execute arbitrary commands with elevated privileges.
Currently, there are no specified workarounds for CVE-2012-4110; applying the latest security patches is the primary mitigation strategy.