CVE-2019-1631

A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to access potentially sensitive system usage information. The vulnerability is due to a lack of proper data protection mechanisms. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow an attacker to view sensitive system data.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cisco:integrated_management_controller:-:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:cisco:unified_computing_system:4.0\(1c\)hs3:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-06-20 03:15

Updated : 2024-02-28 17:08


NVD link : CVE-2019-1631

Mitre link : CVE-2019-1631

CVE.ORG link : CVE-2019-1631


JSON object : View

Products Affected

cisco

  • unified_computing_system
  • integrated_management_controller
CWE
CWE-306

Missing Authentication for Critical Function