Lucene search

K
cveCiscoCVE-2012-3075
HistoryJul 12, 2012 - 10:34 a.m.

CVE-2012-3075

2012-07-1210:34:42
CWE-78
cisco
web.nvd.nist.gov
25
cisco
telepresence
immersive
endpoint devices
security vulnerability
arbitrary commands
remote authentication
cve-2012-3075
nvd

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.008

Percentile

81.3%

The administrative web interface on Cisco TelePresence Immersive Endpoint Devices before 1.7.4 allows remote authenticated users to execute arbitrary commands via a malformed request on TCP port 443, aka Bug ID CSCtn99724.

Affected configurations

Nvd
Node
ciscotelepresence_system_softwareRange1.7.2\(4937\)
OR
ciscotelepresence_system_softwareMatch1.2.3\(1101\)
OR
ciscotelepresence_system_softwareMatch1.3.2\(1393\)
OR
ciscotelepresence_system_softwareMatch1.4.7\(2229\)
OR
ciscotelepresence_system_softwareMatch1.5.1\(2082\)
OR
ciscotelepresence_system_softwareMatch1.5.3\(2115\)
OR
ciscotelepresence_system_softwareMatch1.5.10\(3648\)
OR
ciscotelepresence_system_softwareMatch1.5.11\(3659\)
OR
ciscotelepresence_system_softwareMatch1.5.12\(3701\)
OR
ciscotelepresence_system_softwareMatch1.5.13\(3717\)
OR
ciscotelepresence_system_softwareMatch1.6.0\(3954\)
OR
ciscotelepresence_system_softwareMatch1.6.2\(4023\)
OR
ciscotelepresence_system_softwareMatch1.6.3\(4042\)
OR
ciscotelepresence_system_softwareMatch1.6.4\(4072\)
OR
ciscotelepresence_system_softwareMatch1.6.5\(4097\)
OR
ciscotelepresence_system_softwareMatch1.6.6\(4109\)
OR
ciscotelepresence_system_softwareMatch1.6.7\(4212\)
OR
ciscotelepresence_system_softwareMatch1.6.8\(4222\)
OR
ciscotelepresence_system_softwareMatch1.7.0.1\(4764\)
OR
ciscotelepresence_system_softwareMatch1.7.0.2\(4719\)
OR
ciscotelepresence_system_softwareMatch1.7.1\(4864\)
OR
ciscotelepresence_system_softwareMatch1.7.2.1\(2\)
AND
ciscotelepresence_system_1300_65
OR
ciscotelepresence_system_3000
OR
ciscotelepresence_system_3010
OR
ciscotelepresence_system_3200
OR
ciscotelepresence_system_3210
OR
ciscotelepresence_system_t3
OR
ciscotelepresence_system_t3custom
OR
ciscotelepresence_system_tx1300_47
OR
ciscotelepresence_system_tx1310_65
OR
ciscotelepresence_system_tx9000
OR
ciscotelepresence_system_tx9200
VendorProductVersionCPE
ciscotelepresence_system_software*cpe:2.3:a:cisco:telepresence_system_software:*:*:*:*:*:*:*:*
ciscotelepresence_system_software1.2.3(1101)cpe:2.3:a:cisco:telepresence_system_software:1.2.3\(1101\):*:*:*:*:*:*:*
ciscotelepresence_system_software1.3.2(1393)cpe:2.3:a:cisco:telepresence_system_software:1.3.2\(1393\):*:*:*:*:*:*:*
ciscotelepresence_system_software1.4.7(2229)cpe:2.3:a:cisco:telepresence_system_software:1.4.7\(2229\):*:*:*:*:*:*:*
ciscotelepresence_system_software1.5.1(2082)cpe:2.3:a:cisco:telepresence_system_software:1.5.1\(2082\):*:*:*:*:*:*:*
ciscotelepresence_system_software1.5.3(2115)cpe:2.3:a:cisco:telepresence_system_software:1.5.3\(2115\):*:*:*:*:*:*:*
ciscotelepresence_system_software1.5.10(3648)cpe:2.3:a:cisco:telepresence_system_software:1.5.10\(3648\):*:*:*:*:*:*:*
ciscotelepresence_system_software1.5.11(3659)cpe:2.3:a:cisco:telepresence_system_software:1.5.11\(3659\):*:*:*:*:*:*:*
ciscotelepresence_system_software1.5.12(3701)cpe:2.3:a:cisco:telepresence_system_software:1.5.12\(3701\):*:*:*:*:*:*:*
ciscotelepresence_system_software1.5.13(3717)cpe:2.3:a:cisco:telepresence_system_software:1.5.13\(3717\):*:*:*:*:*:*:*
Rows per page:
1-10 of 331

CVSS2

9

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:S/C:C/I:C/A:C

AI Score

7.4

Confidence

Low

EPSS

0.008

Percentile

81.3%