A vulnerability in the configuration import utility of Cisco Integrated Management Controller (IMC) could allow an unauthenticated, remote attacker to have write access and upload arbitrary data to the filesystem. The vulnerability is due to a failure to delete temporarily uploaded files. An attacker could exploit this vulnerability by crafting a malicious file and uploading it to the affected device. An exploit could allow the attacker to fill up the filesystem or upload malicious scripts.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: cisco

Published: 2019-06-19T00:00:00

Updated: 2019-06-21T08:06:04

Reserved: 2018-12-06T00:00:00


Link: CVE-2019-1629

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2019-06-20T03:15:11.603

Modified: 2019-10-09T23:47:33.003


Link: CVE-2019-1629

JSON object: View

cve-icon Redhat Information

No data.

CWE