CVE-2013-1182

The login page in the Web Console in the Manager component in Cisco Unified Computing System (UCS) before 1.0(2h), 1.1 before 1.1(1j), and 1.3(x) allows remote attackers to bypass LDAP authentication via a malformed request, aka Bug ID CSCtc91207.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
9.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:C/I:C/A:C
ciscoCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 74%
VendorProductVersion
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
𝑥
≤ 1.0
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
1.1
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
1.3\(1c\)
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
1.3\(1m\)
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
1.3\(1n\)
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
1.3\(1o\)
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
1.3\(1p\)
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
1.3\(1q\)
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
1.3\(1t\)
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
1.3\(1w\)
ciscounified_computing_system_infrastructure_and_unified_computing_system_software
1.3\(1y\)
ciscounified_computing_system_6120xp_fabric_interconnect
-
ciscounified_computing_system_6140xp_fabric_interconnect
-
ciscounified_computing_system_6248up_fabric_interconnect
-
ciscounified_computing_system_6296up_fabric_interconnect
-
ciscounified_computing_system_integrated_management_controller
-
𝑥
= Vulnerable software versions
Common Weakness Enumeration