CVE-2020-3241 describes a path traversal vulnerability in Cisco UCS Director's orchestration tasks, affecting Cisco UCS Director products. An authenticated, remote attacker could exploit insufficient input validation on the web-based management interface. This medium-severity vulnerability (CVSS 6.5) allows an attacker to overwrite arbitrary files on the device, leading to high integrity and availability impact. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage for this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 6.7.4.0CPE matchmatch criteria | cpe:2.3:a:cisco:ucs_director:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.