Skip to finding
important · Boot chain — Cisco UCS

A low-privilege Cisco account or physical console access can turn an embedded UCS UEFI shell into a Secure Boot bypass.

Affects

Cisco UCS servers and UCS-based compute, security, management, analytics, and network-edge appliances running vulnerable BIOS or firmware releases with UEFI Secure Boot enabled.

A user with KVM credentials, or anyone at the physical console, can enter the embedded shell and use its memory-write commands to overwrite Secure Boot-related values.

Detail and 5 sources
Share this finding
Get it by email

The same brief, every morning. One email a day, nothing else.

Every finding here carries a source that was checked before it published. If something is wrong, write to admin@fullchain.sh — corrections are published on the day they affect.

Wednesday, September 9, 2026