Vulnerability Details CVE-2013-1182
The login page in the Web Console in the Manager component in Cisco Unified Computing System (UCS) before 1.0(2h), 1.1 before 1.1(1j), and 1.3(x) allows remote attackers to bypass LDAP authentication via a malformed request, aka Bug ID CSCtc91207.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.009
EPSS Ranking 74.2%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2013-1182
-
cpe:2.3:h:cisco:unified_computing_system_6120xp_fabric_interconnect:-
-
cpe:2.3:h:cisco:unified_computing_system_6140xp_fabric_interconnect:-
-
cpe:2.3:h:cisco:unified_computing_system_6248up_fabric_interconnect:-
-
cpe:2.3:h:cisco:unified_computing_system_6296up_fabric_interconnect:-
-
cpe:2.3:h:cisco:unified_computing_system_integrated_management_controller:-
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.0
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.1
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1c)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1m)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1n)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1o)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1p)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1q)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1t)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1w)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1y)