Vulnerability Details CVE-2013-1182
The login page in the Web Console in the Manager component in Cisco Unified Computing System (UCS) before 1.0(2h), 1.1 before 1.1(1j), and 1.3(x) allows remote attackers to bypass LDAP authentication via a malformed request, aka Bug ID CSCtc91207.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 57.8%
CVSS Severity
CVSS v2 Score 9.3
Products affected by CVE-2013-1182
-
cpe:2.3:h:cisco:unified_computing_system_6120xp_fabric_interconnect:-
-
cpe:2.3:h:cisco:unified_computing_system_6140xp_fabric_interconnect:-
-
cpe:2.3:h:cisco:unified_computing_system_6248up_fabric_interconnect:-
-
cpe:2.3:h:cisco:unified_computing_system_6296up_fabric_interconnect:-
-
cpe:2.3:h:cisco:unified_computing_system_integrated_management_controller:-
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.0
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.1
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1c)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1m)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1n)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1o)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1p)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1q)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1t)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1w)
-
cpe:2.3:o:cisco:unified_computing_system_infrastructure_and_unified_computing_system_software:1.3(1y)