Home/Product/cisco ucs director
Product

cisco ucs director

26 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2022-20765
< 6.6
A vulnerability in the web applications of Cisco UCS Director could allow an authenticated, remote attacker to conduct a cross-sit
4.8MEDIUM
CVE-2021-44228
< 6.8.2.0
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration
10.0CRITICAL
CVE-2020-3464
< 6.7.4.1
A vulnerability in the web-based management interface of Cisco UCS Director could allow an authenticated, remote attacker with adm
4.8MEDIUM
CVE-2020-3242
< 6.7.4.0
A vulnerability in the REST API of Cisco UCS Director could allow an authenticated, remote attacker with administrative privileges
4.9MEDIUM
CVE-2020-3241
< 6.7.4.0
A vulnerability in the orchestration tasks of Cisco UCS Director could allow an authenticated, remote attacker to perform a path t
6.5MEDIUM
CVE-2020-3329
>= 5.4.0.0 and < 6.7.4.0
A vulnerability in role-based access control of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and C
4.3MEDIUM
CVE-2020-3252
all versions
Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote atta
6.5MEDIUM
CVE-2020-3251
all versions
Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote atta
8.8HIGH
CVE-2020-3250
all versions
Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote atta
9.8CRITICAL
CVE-2020-3249
all versions
Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote atta
7.5HIGH
CVE-2020-3248
all versions
Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote atta
9.8CRITICAL
CVE-2020-3247
all versions
Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote atta
9.8CRITICAL
CVE-2020-3243
all versions
Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote atta
9.8CRITICAL
CVE-2020-3240
all versions
Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote atta
7.3HIGH
CVE-2020-3239
all versions
Multiple vulnerabilities in the REST API of Cisco UCS Director and Cisco UCS Director Express for Big Data may allow a remote atta
8.8HIGH
CVE-2019-16003
< 6.7.3.1
A vulnerability in the web-based management interface of Cisco UCS Director could allow an unauthenticated, remote attacker to dow
5.3MEDIUM
CVE-2019-1974
>= 5.5.0.0 and <= 5.5.0.2
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Direct
9.8CRITICAL
CVE-2019-1938
all versions
A vulnerability in the web-based management interface of Cisco UCS Director and Cisco UCS Director Express for Big Data could allo
9.8CRITICAL
CVE-2019-1937
>= 6.6.0.0 and <= 6.6.1.0
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Direct
9.8CRITICAL
CVE-2019-1936
all versions
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Direct
7.2HIGH
CVE-2019-1935
all versions
A vulnerability in Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Director, and Cisco UCS Director Express for
9.8CRITICAL
CVE-2019-12634
>= 6.7.0.0 and <= 6.7.2.0
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Supervisor, Cisco UCS Direct
7.5HIGH
CVE-2018-15406
all versions
A vulnerability in the web-based management interface of Cisco UCS Director could allow an unauthenticated, remote attacker to con
6.1MEDIUM
CVE-2018-15405
all versions
A vulnerability in the web interface for specific feature sets of Cisco Integrated Management Controller (IMC) Supervisor and Cisc
6.5MEDIUM
CVE-2018-0148
all versions
A vulnerability in the web-based management interface of Cisco UCS Director Software and Cisco Integrated Management Controller (I
8.8HIGH
CVE-2014-0709
<= 4.0.0.2
Cisco UCS Director (formerly Cloupia) before 4.0.0.3 has a hardcoded password for the root account, which makes it easier for remo
Vulnerabilities
CISA KEV catalog
CWE weaknesses
CAPEC attack patterns
Package vulnerabilities
Threat intelligence
Threat actors
Tools & malware
ATT&CK techniques
IOCs
Detection & defense
Sigma rules
YARA rules
Atomic Red Team tests
D3FEND countermeasures
Compliance
NIST 800-53
ISO 27001:2022
SOC 2 TSC
PCI-DSS v4.0
CIS Controls v8.1
About
All capabilities
Live statistics
Data sources
Privacy policy
Terms of service
threatengine.sh  ·  Open-source threat intelligence platform  ·  100+ authoritative sources  ·  Every fact traces to its origin