Cisco TelePresence Recording Server devices with software 1.6.x do not require authentication for an XML-RPC interface, which allows remote malicious users to perform unspecified actions via a session on TCP port 8080, aka Bug ID CSCtg35833.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
cisco telepresence_recording_server_software 1.6.1 |
||
cisco telepresence_recording_server_software 1.6.3 |
||
cisco telepresence_recording_server_software 1.6.2 |
||
cisco telepresence_recording_server |