CVE-2015-6388: SSRF
Published Dec 5, 2015
·Updated
Cisco Unified Computing System (UCS) Central software 1.3(0.1) allows remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted request, aka Bug ID CSCux33575.
Affected Software
1 affected component
cisco Unified Computing System Central Software=1.3\(0.1\)
Event History
Dec 5, 2015
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6388?
CVE-2015-6388 is considered to have a medium severity as it allows for server-side request forgery (SSRF) attacks.
2
How do I fix CVE-2015-6388?
To mitigate CVE-2015-6388, it is recommended to upgrade to a secure version of Cisco UCS Central software that is not affected by this vulnerability.
3
What systems are affected by CVE-2015-6388?
CVE-2015-6388 specifically affects Cisco Unified Computing System Central software version 1.3(0.1).
4
What kind of attacks can CVE-2015-6388 facilitate?
CVE-2015-6388 can facilitate server-side request forgery (SSRF) attacks, potentially allowing attackers to interact with internal systems.
5
When was CVE-2015-6388 disclosed?
CVE-2015-6388 was disclosed in December 2015.