First published: Sat Oct 19 2013(Updated: )
The fabric-interconnect component in Cisco Unified Computing System (UCS) allows local users to gain privileges and read arbitrary files via crafted command parameters within the command-line interface, aka Bug ID CSCtr43374.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Computing System software |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-4113 is rated as a critical vulnerability due to the potential for unauthorized privilege escalation.
To remediate CVE-2012-4113, users should apply the latest security patches provided by Cisco for the Unified Computing System software.
CVE-2012-4113 affects local users of the Cisco Unified Computing System who can exploit the command-line interface vulnerabilities.
The impact of CVE-2012-4113 includes unauthorized access to sensitive files and potential escalation of privileges within the system.
There are no specific workarounds documented for CVE-2012-4113 beyond applying the necessary patches to the affected software.