Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2011-0383

The Java Servlet framework on Cisco TelePresence Recording Server devices with software 1.6.x before 1.6.2 and Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x does not require administrative authentication for unspecified actions, which allows remote attackers to execute arbitrary code via a crafted request, aka Bug IDs CSCtf42005 and CSCtf42008.

SeverityHIGH
CVSS10.0
CWECWE-287
KEV
Published
Modified

Related Products

Product Advisory Evidence
Cisco TelePresence Recording Server cisco-sa-20110223-telepresence-ctrs Cisco OpenVuln
Cisco TelePresence Multipoint Switch cisco-sa-20110223-telepresence-ctrs Cisco OpenVuln
Cisco TelePresence Manager cisco-sa-20110223-telepresence-ctrs Cisco OpenVuln
Cisco TelePresence cisco-sa-20110223-telepresence-ctrs Cisco OpenVuln