VULNERABILITY INTELLIGENCE
CVE-2012-4092
CVSS score5.8 MEDIUM
EPSS probability0.84%
CISA KEVNot currently listed
Published2013-09-26
Last modified2026-06-16
Description
The management interface in the Central Software component in Cisco Unified Computing System (UCS) does not properly validate the identity of vCenter consoles, which allows man-in-the-middle attackers to read or modify an inter-device data stream by spoofing an identity, aka Bug ID CSCtk00683.