7.5
CVSSv2

CVE-2011-0380

Published: 25/02/2011 Updated: 17/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cisco TelePresence Manager 1.2.x up to and including 1.6.x allows remote malicious users to bypass authentication and invoke arbitrary methods via a malformed SOAP request, aka Bug ID CSCtc59562.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco telepresence manager 1.3.2

cisco telepresence manager 1.4.0

cisco telepresence manager 1.2.0.0

cisco telepresence manager 1.6.2

cisco telepresence manager 1.5.1

cisco telepresence manager 1.5.2

cisco telepresence manager 1.6.5

cisco telepresence manager 1.6.0

cisco telepresence manager 1.6.3

Vendor Advisories

Multiple vulnerabilities exist in the Cisco TelePresence Manager This security advisory outlines the details of the following vulnerabilities: Simple Object Access Protocol (SOAP) Authentication Bypass Java Remote Method Invocation (RMI) Command Injection Cisco Discovery Protocol Remote Code Execution Duplicat ...