PT-2011-3934 · Cisco · Cisco Unified Computing System+1
Published
2011-10-27
·
Updated
2018-10-30
·
CVE-2011-2569
CVSS v2.0
6.8
Medium
| Vector | AV:L/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco Nexus OS versions 4.2 and 5.0
Cisco Unified Computing System versions 1.4 and 2.0
Description
The issue is related to the improper restriction of command-line options, which allows local users to gain privileges.
Recommendations
For Cisco Nexus OS versions 4.2 and 5.0, restrict command-line options to prevent privilege escalation.
For Cisco Unified Computing System versions 1.4 and 2.0, limit command-line options to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Nexus Os
Cisco Unified Computing System