CVE-2013-1190: Medium severity Cisco Unified Computing System vulnerability
The C-Series Rack Server component 1.4 in Cisco Unified Computing System (UCS) does not properly restrict inbound access to ports, which allows remote attackers to cause a denial of service (Integrated Management Controller reboot or hang) via crafted packets, as demonstrated by nmap, aka Bug ID CSCtx19850.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-1190?
CVE-2013-1190 is classified as a medium severity vulnerability due to its potential to cause denial of service.
How do I fix CVE-2013-1190?
To fix CVE-2013-1190, you should apply the latest security updates provided by Cisco for the Unified Computing System.
What systems are affected by CVE-2013-1190?
CVE-2013-1190 affects the 1.4 version of the C-Series Rack Server component in Cisco Unified Computing System.
Can CVE-2013-1190 be exploited remotely?
Yes, CVE-2013-1190 can be exploited remotely by attackers sending crafted packets to unprotected ports.
What are the consequences of CVE-2013-1190 exploitation?
Exploitation of CVE-2013-1190 can result in a denial of service, causing the Integrated Management Controller to reboot or hang.