A vulnerability in the web-based management interface of Cisco UCS Director could allow an unauthenticated, remote attacker to download system log files from an affected device. The vulnerability is due to an issue in the authentication logic of the web-based management interface. An attacker could exploit this vulnerability by sending a crafted request to the web interface. A successful exploit could allow the attacker to download log files if they were previously generated by an administrator.
History

Fri, 15 Nov 2024 18:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2020-01-26T04:45:40.135464Z

Updated: 2024-11-15T17:43:58.260Z

Reserved: 2019-09-06T00:00:00

Link: CVE-2019-16003

cve-icon Vulnrichment

Updated: 2024-08-05T01:03:32.553Z

cve-icon NVD

Status : Modified

Published: 2020-01-26T05:15:13.867

Modified: 2024-11-21T04:29:54.723

Link: CVE-2019-16003

cve-icon Redhat

No data.