CVE-2015-6355: Infoleak
The web interface in Cisco Unified Computing System (UCS) 2.2(5b)A on blade servers allows remote attackers to obtain potentially sensitive version information by visiting an unspecified URL, aka Bug ID CSCuw87226.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6355?
CVE-2015-6355 has a medium severity rating as it allows remote attackers to access sensitive version information.
How do I fix CVE-2015-6355?
To mitigate CVE-2015-6355, it is recommended to upgrade to a patched version of Cisco Unified Computing System software.
What types of attacks can exploit CVE-2015-6355?
CVE-2015-6355 can be exploited through sending requests to an unspecified URL that reveals sensitive version information.
Which Cisco products are affected by CVE-2015-6355?
CVE-2015-6355 specifically affects the Cisco Unified Computing System software version 2.2(5b)A on blade servers.
When was CVE-2015-6355 publicly disclosed?
CVE-2015-6355 was publicly disclosed on November 2, 2015, as part of a Cisco security advisory.