CVE-2015-0666

Confirmed PUBLISHED

Directory traversal vulnerability in the fmserver servlet in Cisco Prime Data Center Network Manager (DCNM) before 7.1(1) allows remote attackers...

Vendor: Cisco Product: Prime Data Center Network Manager
Exploited in the wild

Recommended Action

Prioritize remediation. Validate affected assets and apply vendor fixes on an accelerated timeline.

Confidence
Confirmed
Exploitation Status
Exploited in the wild
Observed in Sensors
No
Attempts (30d)
Unique Attacker IPs
CISA KEV
In CISA KEV
CVSS / EPSS
7.5 High EPSS 40.4%

At a Glance

Directory traversal vulnerability in the fmserver servlet in Cisco Prime Data Center Network Manager (DCNM) before 7.1(1) allows remote attackers to read arbitrary files via a crafted pathname, aka Bug ID CSCus00241.

cisa edge
CVE Published
Apr 03, 2015
Exploitation Reported
Mar 25, 2022
CVSS
7.5 High
EPSS
40.4%
Remote Low complexity No user interaction Unauthenticated

CVE References