Unified Computing System

Vendor:

First CVE: Oct 27, 2011 · Active for 14 years

110
Total CVEs
More Total CVEs than 99% of tracked products
10.0
Avg CVEs / Year
Higher CVE frequency than 96% of tracked products
6.6
Avg CVSS
Higher Avg CVSS than 32% of tracked products
0.9%
KEV Rate
Higher KEV Rate than 96% of tracked products

Trends Over Time

The number and severity of CVEs published that impact Unified Computing System over time

Volume of CVEsAvg CVSS Base Score
First CVE
Oct 27, 2011
14 years ago
Most Recent CVE
Nov 18, 2024
613 days ago

CVE Severity & Scoring

Unified Computing System110 CVEs
All CVEs352,231 CVEs
MediumHighCritical
Attack Vector
Local23 (20.9%)
Network34 (30.9%)
Unknown50 (45.5%)
Physical1 (0.9%)
Adjacent Network2 (1.8%)
Attack Complexity
Low60 (54.5%)
High0 (0.0%)
Unknown50 (45.5%)
User Interaction
None57 (51.8%)
Unknown50 (45.5%)
Required3 (2.7%)
Privileges Required
Low23 (20.9%)
High16 (14.5%)
None21 (19.1%)
Unknown50 (45.5%)

Top CVEs

Signals from CVEs in this product scope (110 CVEs).

110 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
Apache Log4j2 2.0-beta9 through 2.15.0 (excluding security releases 2.12.2, 2.12.3, and 2.3.1) JNDI features used in configuration, log messages, and parameters do not protect agai
Dec 10, 202110.099YESYES
A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to read sensitive memory cont
Jun 20, 20189.835NONO
A vulnerability in the Cisco Fabric Services (CFS) component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to execute arbitrary co
Jun 20, 20189.833NONO
A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to execute arbitrary code or
Jun 20, 20189.833NONO
A vulnerability in the Cisco Fabric Services component of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, remote attacker to execute arbitrary code or
Jun 20, 20189.833NONO
IP-in-IP protocol specifies IP Encapsulation within IP standard (RFC 2003, STD 1) that decapsulate and route IP-in-IP traffic is vulnerable to spoofing, access-control bypass and o
Jun 2, 20205.330NONO
A vulnerability in the web server of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to set sensitive configuration values and gain eleva
Aug 21, 20198.828NONO
A vulnerability in the network stack of Cisco NX-OS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. Thi
Feb 24, 20218.627NONO
A vulnerability in the Unidirectional Link Detection (UDLD) feature of Cisco FXOS Software and Cisco NX-OS Software could allow an unauthenticated, adjacent attacker to execute arb
Feb 24, 20218.827NONO
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) Software could allow an authenticated, remote attacker to inject arbitrary com
Aug 21, 20198.827NONO

Exploit Exposure

Signals from CVEs in this product scope (110 CVEs).

CISA KEV
1 CVE
0.9% of CVEs· 96th percentile
Metasploit
1 CVE
0.9% of CVEs· 96th percentile
Nuclei
1 CVE
0.9% of CVEs· 96th percentile
ExploitDB
1 CVE
0.9% of CVEs· 87th percentile

Social Chatter

Signals from CVEs in this product scope (110 CVEs).

Media Mentions

Signals from CVEs in this product scope (110 CVEs).

Top CNAs Publishing CVEs For Unified Computing System

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
9.9\(0.902\)17.80.4%00
9.1\(1.13\)17.80.4%00
9.0\(100.20\)b17.80.4%00
7.0\(0\)hsk\(0.357\)96.00.5%00
7.0\(0\)bz\(0.46\)17.80.4%00
5.5\(203\)17.80.4%00
4.3\(4b\)17.20.9%00
4.3\(4a\)17.20.9%00
4.3\(3c\)17.20.9%00
4.3\(3a\)17.20.9%00
4.3\(2e\)17.20.9%00
4.3\(2c\)17.20.9%00
4.3\(2b\)17.20.9%00
4.2\(3k\)17.20.9%00
4.2\(3j\)17.20.9%00
4.2\(3i\)26.90.6%00
4.2\(3h\)26.90.6%00
4.2\(3g\)26.90.6%00
4.2\(3e\)26.90.6%00
4.2\(3d\)26.90.6%00