Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2011-0384

The Java Servlet framework on Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x does not require administrative authentication for unspecified actions, which allows remote attackers to execute arbitrary code via a crafted request, aka Bug ID CSCtf01253.

SeverityHIGH
CVSS10.0
CWECWE-287
KEV
Published
Modified

Related Products

Product Advisory Evidence
Cisco TelePresence Recording Server cisco-sa-20110223-telepresence-ctrs Cisco OpenVuln
Cisco TelePresence Multipoint Switch cisco-sa-20110223-telepresence-ctrs Cisco OpenVuln
Cisco TelePresence Manager cisco-sa-20110223-telepresence-ctrs Cisco OpenVuln
Cisco TelePresence cisco-sa-20110223-telepresence-ctrs Cisco OpenVuln