CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
NONE
Availability Impact
NONE
AV:L/AC:L/Au:N/C:C/I:N/A:N
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
NONE
Availability Impact
NONE
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
AI Score
Confidence
High
EPSS
Percentile
20.0%
Cisco TelePresence endpoints running either CE or TC software contain a vulnerability that could allow an authenticated, local attacker to execute a local shell command injection. More Information: CSCvb25010. Known Affected Releases: 8.1.x. Known Fixed Releases: 6.3.4 7.3.7 8.2.2 8.3.0.
Vendor | Product | Version | CPE |
---|---|---|---|
cisco | telepresence_tc_software | 7.1.0 | cpe:2.3:a:cisco:telepresence_tc_software:7.1.0:*:*:*:*:*:*:* |
cisco | telepresence_tc_software | 7.1.1 | cpe:2.3:a:cisco:telepresence_tc_software:7.1.1:*:*:*:*:*:*:* |
cisco | telepresence_tc_software | 7.1.2 | cpe:2.3:a:cisco:telepresence_tc_software:7.1.2:*:*:*:*:*:*:* |
cisco | telepresence_tc_software | 7.1.3 | cpe:2.3:a:cisco:telepresence_tc_software:7.1.3:*:*:*:*:*:*:* |
cisco | telepresence_tc_software | 7.1.4 | cpe:2.3:a:cisco:telepresence_tc_software:7.1.4:*:*:*:*:*:*:* |
cisco | telepresence_tc_software | 7.3.0 | cpe:2.3:a:cisco:telepresence_tc_software:7.3.0:*:*:*:*:*:*:* |
cisco | telepresence_tc_software | 7.3.1 | cpe:2.3:a:cisco:telepresence_tc_software:7.3.1:*:*:*:*:*:*:* |
cisco | telepresence_tc_software | 7.3.2 | cpe:2.3:a:cisco:telepresence_tc_software:7.3.2:*:*:*:*:*:*:* |
cisco | telepresence_tc_software | 7.3.3 | cpe:2.3:a:cisco:telepresence_tc_software:7.3.3:*:*:*:*:*:*:* |
cisco | telepresence_tc_software | 8.0.0 | cpe:2.3:a:cisco:telepresence_tc_software:8.0.0:*:*:*:*:*:*:* |
[
{
"product": "Cisco TelePresence CE and TC 8.1.x",
"vendor": "n/a",
"versions": [
{
"status": "affected",
"version": "Cisco TelePresence CE and TC 8.1.x"
}
]
}
]
More
CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
NONE
Availability Impact
NONE
AV:L/AC:L/Au:N/C:C/I:N/A:N
CVSS3
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
NONE
Availability Impact
NONE
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
AI Score
Confidence
High
EPSS
Percentile
20.0%