CVE-2012-4073 Information

Description

The KVM subsystem in the client in Cisco Unified Computing System (UCS) does not verify X.509 certificates from SSL servers which allows man-in-the-middle attackers to spoof servers and read or modify KVM data via a crafted certificate aka Bug ID CSCte90332.

Reference

http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-4073 http://www.securitytracker.com/id/1029068

Share on: