CVE-2012-4073: Cisco Unified Computing System

Medium severity, CVSS 5.8. EPSS: 0.6% chance of exploitation in the next 30 days.

The KVM subsystem in the client in Cisco Unified Computing System (UCS) does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers, and read or modify KVM data, via a crafted certificate, aka Bug ID CSCte90332.

Affected products

  • Cisco Unified Computing System: affected versions not specified

Published 2013-09-20. Last modified 2026-06-16.