CVE-2016-1313: Cisco Ucs Invicta c3124sa Appliance

Critical severity, CVSS 9.8. EPSS: 3% chance of exploitation in the next 30 days.

Cisco UCS Invicta C3124SA Appliance 4.3.1 through 5.0.1, UCS Invicta Scaling System and Appliance, and Whiptail Racerunner improperly store a default SSH private key, which allows remote attackers to obtain root access via unspecified vectors, aka Bug ID CSCun71294.

Affected products

  • Cisco Ucs Invicta c3124sa Appliance: version 4.3.1 only; version 4.5.0 only; version 5.0.1 only

Published 2016-04-06. Last modified 2026-06-17.