8.3
CVSSv2

CVE-2012-3074

Published: 12/07/2012 Updated: 30/10/2018
CVSS v2 Base Score: 8.3 | Impact Score: 10 | Exploitability Score: 6.5
VMScore: 739
Vector: AV:A/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

An unspecified API on Cisco TelePresence Immersive Endpoint Devices prior to 1.9.1 allows remote malicious users to execute arbitrary commands by leveraging certain adjacency and sending a malformed request on TCP port 61460, aka Bug ID CSCtz38382.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco telepresence system software

cisco telepresence system software 1.2.3(1101)

cisco telepresence system software 1.3.2(1393)

cisco telepresence system software 1.4.7(2229)

cisco telepresence system software 1.5.1(2082)

cisco telepresence system software 1.5.3(2115)

cisco telepresence system software 1.5.10(3648)

cisco telepresence system software 1.5.11(3659)

cisco telepresence system software 1.5.12(3701)

cisco telepresence system software 1.5.13(3717)

cisco telepresence system software 1.6.0(3954)

cisco telepresence system software 1.6.2(4023)

cisco telepresence system software 1.6.3(4042)

cisco telepresence system software 1.6.4(4072)

cisco telepresence system software 1.6.5(4097)

cisco telepresence system software 1.6.6(4109)

cisco telepresence system software 1.6.7(4212)

cisco telepresence system software 1.6.8(4222)

cisco telepresence system software 1.7.0.1(4764)

cisco telepresence system software 1.7.0.2(4719)

cisco telepresence system software 1.7.1(4864)

cisco telepresence system software 1.7.2(4937)

cisco telepresence system software 1.7.2.1(2)

cisco telepresence system software 1.7.4(270)

cisco telepresence system software 1.7.5(42)

cisco telepresence system software 1.7.6(4)

cisco telepresence system software 1.8.0(55)

cisco telepresence system software 1.8.1(34)

cisco telepresence system software 1.8.2(11)

cisco telepresence system software 1.8.3(4)

cisco telepresence system software 1.9.0(46)

cisco telepresence system 1300 65

cisco telepresence system 3000

cisco telepresence system 3010

cisco telepresence system 3200

cisco telepresence system 3210

cisco telepresence system t3

cisco telepresence system tx1300 47

cisco telepresence system tx1310 65

cisco telepresence system tx9000

cisco telepresence system tx9200

Vendor Advisories

Cisco TelePresence Endpoint devices contain the following vulnerabilities: Cisco TelePresence API Remote Command Execution Vulnerability Cisco TelePresence Remote Command Execution Vulnerability Cisco TelePresence Cisco Discovery Protocol Remote Code Execution Vulnerability Exploitation of the API Remote Command Execution vulnerabilit ...