Cisco Unified Computing System Blade Server Information Disclosure Vulnerability
The vulnerability is due to the verbose output that is returned when a specific URL is submitted to an affected system. An attacker could exploit this vulnerability by browsing to a specific URL. A successful exploit could allow an attacker to obtain information from the UCS. The information could be used for reconnaissance attacks.
Cisco has not released software updates that address this vulnerability. There are no workarounds that mitigate this vulnerability.
This advisory is available at the following link: http://ift.tt/1McyvfM
from Cisco Security Advisory http://ift.tt/1McyvfM