Lucene search

K
nvd[email protected]NVD:CVE-2011-0385
HistoryFeb 25, 2011 - 12:00 p.m.

CVE-2011-0385

2011-02-2512:00:18
web.nvd.nist.gov
5

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

Low

EPSS

0.028

Percentile

90.7%

The administrative web interface on Cisco TelePresence Recording Server devices with software 1.6.x and Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x allows remote attackers to create or overwrite arbitrary files, and possibly execute arbitrary code, via a crafted request, aka Bug IDs CSCth85786 and CSCth61065.

Affected configurations

Nvd
Node
ciscotelepresence_recording_server_softwareMatch1.6.1
OR
ciscotelepresence_recording_server_softwareMatch1.6.2
OR
ciscotelepresence_recording_server_softwareMatch1.6.3
AND
ciscotelepresence_recording_server
Node
ciscotelepresence_multipoint_switch_softwareMatch1.0.4.0
OR
ciscotelepresence_multipoint_switch_softwareMatch1.1.0
OR
ciscotelepresence_multipoint_switch_softwareMatch1.1.1
OR
ciscotelepresence_multipoint_switch_softwareMatch1.1.2
OR
ciscotelepresence_multipoint_switch_softwareMatch1.5.0
OR
ciscotelepresence_multipoint_switch_softwareMatch1.5.1
OR
ciscotelepresence_multipoint_switch_softwareMatch1.5.2
OR
ciscotelepresence_multipoint_switch_softwareMatch1.5.3
OR
ciscotelepresence_multipoint_switch_softwareMatch1.5.4
OR
ciscotelepresence_multipoint_switch_softwareMatch1.5.5
OR
ciscotelepresence_multipoint_switch_softwareMatch1.5.6
OR
ciscotelepresence_multipoint_switch_softwareMatch1.6.0
OR
ciscotelepresence_multipoint_switch_softwareMatch1.6.1
OR
ciscotelepresence_multipoint_switch_softwareMatch1.6.2
OR
ciscotelepresence_multipoint_switch_softwareMatch1.6.3
OR
ciscotelepresence_multipoint_switch_softwareMatch1.6.4
AND
ciscotelepresence_multipoint_switch
VendorProductVersionCPE
ciscotelepresence_recording_server_software1.6.1cpe:2.3:a:cisco:telepresence_recording_server_software:1.6.1:*:*:*:*:*:*:*
ciscotelepresence_recording_server_software1.6.2cpe:2.3:a:cisco:telepresence_recording_server_software:1.6.2:*:*:*:*:*:*:*
ciscotelepresence_recording_server_software1.6.3cpe:2.3:a:cisco:telepresence_recording_server_software:1.6.3:*:*:*:*:*:*:*
ciscotelepresence_recording_server*cpe:2.3:h:cisco:telepresence_recording_server:*:*:*:*:*:*:*:*
ciscotelepresence_multipoint_switch_software1.0.4.0cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.0.4.0:*:*:*:*:*:*:*
ciscotelepresence_multipoint_switch_software1.1.0cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.1.0:*:*:*:*:*:*:*
ciscotelepresence_multipoint_switch_software1.1.1cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.1.1:*:*:*:*:*:*:*
ciscotelepresence_multipoint_switch_software1.1.2cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.1.2:*:*:*:*:*:*:*
ciscotelepresence_multipoint_switch_software1.5.0cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.5.0:*:*:*:*:*:*:*
ciscotelepresence_multipoint_switch_software1.5.1cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.5.1:*:*:*:*:*:*:*
Rows per page:
1-10 of 211

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.3

Confidence

Low

EPSS

0.028

Percentile

90.7%