CVE

Id
57315  
CVE No.
CVE-2012-4072  
Status
Candidate  
Description
The KVM subsystem in Cisco Unified Computing System (UCS) relies on a hardcoded X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers, and read keyboard and mouse events, by leveraging knowledge of this certificate"s private key, aka Bug ID CSCte90327.  
Phase
Assigned (20120731)  
Votes
None (candidate not yet proposed)  
Comments