Home/Product/cisco integrated management controller supervisor
Product

cisco integrated management controller supervisor

27 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2021-44228
< 2.3.2.1
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration
10.0CRITICAL
CVE-2020-3329
>= 1.1.0.0 and < 2.2.1.3
A vulnerability in role-based access control of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and C
4.3MEDIUM
CVE-2019-1974
>= 2.2.0.0 and <= 2.2.0.6
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Direct
9.8CRITICAL
CVE-2019-1937
>= 2.2.0.3 and <= 2.2.0.6
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Direct
9.8CRITICAL
CVE-2019-1936
>= 2.2.0.0 and <= 2.2.0.6
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Direct
7.2HIGH
CVE-2019-1935
>= 2.2.0.0 and <= 2.2.0.6
A vulnerability in Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS Director Express for
9.8CRITICAL
CVE-2019-1908
>= 2.0.0.0 and < 2.0\(13o\)
A vulnerability in the Intelligent Platform Management Interface (IPMI) implementation of Cisco Integrated Management Controller (
7.5HIGH
CVE-2019-1907
< 4.0\(4b\)
A vulnerability in the web server of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to
8.8HIGH
CVE-2019-1900
>= 4.0.0.0 and < 4.0\(2f\)
A vulnerability in the web server of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker
7.5HIGH
CVE-2019-1896
>= 2.0.0.0 and < 2.0\(13o\)
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an authenticated
7.2HIGH
CVE-2019-1885
>= 3.0.0.0 and < 3.0\(4k\)
A vulnerability in the Redfish protocol of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attac
7.2HIGH
CVE-2019-1883
>= 3.0.0.0 and < 3.0\(4k\)
A vulnerability in the command-line interface of Cisco Integrated Management Controller (IMC) could allow an authenticated, local
7.8HIGH
CVE-2019-1871
>= 3.0.0.0 and < 3.0\(4k\)
A vulnerability in the Import Cisco IMC configuration utility of Cisco Integrated Management Controller (IMC) could allow an authe
7.2HIGH
CVE-2019-1865
>= 1.5.0.0 and < 1.5\(9g\)
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Software could allow an auth
8.8HIGH
CVE-2019-1864
>= 1.5.0.0 and < 1.5\(9g\)
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Software could allow an auth
8.8HIGH
CVE-2019-1863
>= 1.5.0.0 and < 1.5\(9g\)
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Software could allow an auth
8.1HIGH
CVE-2019-1850
>= 3.0.0.0 and < 3.0\(4k\)
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Software could allow an auth
7.2HIGH
CVE-2019-1634
>= 1.5.0.0 and < 1.5\(9g\)
A vulnerability in the Intelligent Platform Management Interface (IPMI) of Cisco Integrated Management Controller (IMC) could allo
7.2HIGH
CVE-2019-12634
>= 2.2.0.3 and <= 2.2.0.6
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Direct
7.5HIGH
CVE-2018-15404
all versions
A vulnerability in the web interface of Cisco Integrated Management Controller (IMC) Supervisor and Cisco UCS Director could allow
6.5MEDIUM
CVE-2018-0149
all versions
A vulnerability in the web-based management interface of Cisco Integrated Management Controller Supervisor Software and Cisco UCS
4.8MEDIUM
CVE-2017-6619
all versions
A vulnerability in the web-based GUI of Cisco Integrated Management Controller (IMC) 3.0(1c) could allow an authenticated, remote
8.8HIGH
CVE-2017-6618
all versions
A vulnerability in the web-based GUI of Cisco Integrated Management Controller (IMC) 3.0(1c) could allow an authenticated, remote
5.4MEDIUM
CVE-2017-6617
all versions
A vulnerability in the session identification management functionality of the web-based GUI of Cisco Integrated Management Control
5.4MEDIUM
CVE-2017-6616
all versions
A vulnerability in the web-based GUI of Cisco Integrated Management Controller (IMC) 3.0(1c) could allow an authenticated, remote
8.8HIGH
CVE-2015-6399
all versions
The Supervisor 1.0.0.0 and 1.0.0.1 in Cisco Integrated Management Controller (IMC) before 2.0(9) allows remote authenticated users
CVE-2015-6259
<= 1.0.0.0
The JavaServer Pages (JSP) component in Cisco Integrated Management Controller (IMC) Supervisor before 1.0.0.1 and UCS Director (f
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin