5
CVSSv2

CVE-2012-5444

Published: 17/01/2013 Updated: 29/01/2013
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cisco TelePresence Video Communication Server (VCS) X7.0.3 does not properly process certain search rules, which allows remote malicious users to create conferences via an unspecified Conductor request, aka Bug ID CSCub67989.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco telepresence_video_communication_servers_software x7.0.3

Vendor Advisories

Cisco TelePresence Video Communication Server (VCS) contains a vulnerability that could allow an unauthenticated, remote attacker to bypass security restrictions on a targeted system The vulnerability is due to improper processing of certain search rules processed by the affected software An unauthenticated, remote attacker could exploit this v ...