10
CVSSv2

CVE-2011-0381

Published: 25/02/2011 Updated: 17/08/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 890
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Cisco TelePresence Manager 1.2.x up to and including 1.6.x allows remote malicious users to perform unspecified actions and consequently execute arbitrary code via a crafted request to the Java RMI interface, related to a "command injection vulnerability," aka Bug ID CSCtf97085.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco telepresence manager 1.4.0

cisco telepresence manager 1.2.0.0

cisco telepresence manager 1.6.5

cisco telepresence manager 1.6.3

cisco telepresence manager 1.5.1

cisco telepresence manager 1.5.2

cisco telepresence manager 1.3.2

cisco telepresence manager 1.6.0

cisco telepresence manager 1.6.2

Vendor Advisories

Multiple vulnerabilities exist in the Cisco TelePresence Manager This security advisory outlines the details of the following vulnerabilities: Simple Object Access Protocol (SOAP) Authentication Bypass Java Remote Method Invocation (RMI) Command Injection Cisco Discovery Protocol Remote Code Execution Duplicat ...