DETECTION OVERVIEW
Risk Factors
Cisco HyperFlex HX hypervisors are not often exposed to the internet, but an unauthenticated attacker with network access to a HyperFlex device can leverage attack tools such as Metasploit modules to exploit this vulnerability. An attacker can gain complete control of a hypervisor within a data center and pivot to attack other systems in an organization.
Kill Chain
Risk Score
83
Operating System (OS) command injection (also known as shell injection) is a vulnerability that enables an attacker to run arbitrary, malicious OS commands on a server running vulnerable software. The web-based management interface of Cisco HyperFlex HX has a vulnerability in how it validates user input. An attacker can send a malicious HTTP request that results in remote code execution. After compromising the hypervisor, the attacker can further attack other parts of the hosting infrastructure.