CVE-2011-0379
published 2011-02-25CVE-2011-0379: Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 1.6.x; Cisco TelePresence Multipoint Switch (CTMS) devices with…
PriorityP349high7.9CVSS 2.0
AVAACMAuNCCICAC
EPSS
2.15%
80.1th percentile
Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 1.6.x; Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x; Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x; and Cisco TelePresence Manager 1.2.x, 1.3.x, 1.4.x, 1.5.x, and 1.6.2 allows remote attackers to execute arbitrary code via a crafted Cisco Discovery Protocol packet, aka Bug IDs CSCtd75769, CSCtd75766, CSCtd75754, and CSCtd75761.
Affected
41 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | adaptive_security_appliance_software | — | — |
| cisco | telepresence_manager | — | — |
| cisco | telepresence_manager | — | — |
| cisco | telepresence_manager | — | — |
| cisco | telepresence_manager | — | — |
| cisco | telepresence_manager | — | — |
| cisco | telepresence_manager | — | — |
| cisco | telepresence_multipoint_switch | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_multipoint_switch_software | — | — |
| cisco | telepresence_system_software | — | — |
CVSS provenance
nvdv2.07.9HIGHAV:A/AC:M/Au:N/C:C/I:C/A:C
vendor_cisco10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Multiple Vulnerabilities in Cisco TelePresence Endpoint Devices
vendor_cisco·2011-02-23·CVSS 10.0
CVE-2011-0372 [CRITICAL] CWE-119 Multiple Vulnerabilities in Cisco TelePresence Endpoint Devices
Multiple Vulnerabilities in Cisco TelePresence Endpoint Devices
Multiple vulnerabilities exist in the Cisco TelePresence solution; each
component of the solution is addressed independently in its own advisory. This
advisory addresses Cisco TelePresence endpoint devices and details the
following vulnerabilities:
Unauthenticated Common Gateway Interface (CGI) Access
CGI Command Injection
TFTP Information Disclosure
Malicious IP Address Injection
XML-Remote Procedure Call (RPC) Command Injection
Cisco Discovery Protocol Remote Code Execution
Duplicate Issue Identification in Other Cisco TelePresence Advisories
The Cisco Discovery Protocol Remote Code Execution vulnerability
affects Cisco TelePresence endpoint devices, Manager, Multipoint Switch, and
Recording Server. The defect that
Cisco
Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch
vendor_cisco
CVE-2011-0379 Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch
CVE-2011-0379: Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch
Multiple vulnerabilities exist within the Cisco TelePresence Multipoint Switch. This security advisory outlines
CWE: CWE-264, CWE-399, CWE-264, CWE-399
Bug IDs: CSCtf42008, CSCtf42005, CSCth61065, CSCth85786, CSCtd75754
GHSA
GHSA-89cx-qwg6-wv7h: Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 1
ghsa_unreviewed·2022-05-17
CVE-2011-0379 [HIGH] CWE-119 GHSA-89cx-qwg6-wv7h: Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 1
Buffer overflow on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 1.6.x; Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x; Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x; and Cisco TelePresence Manager 1.2.x, 1.3.x, 1.4.x, 1.5.x, and 1.6.2 allows remote attackers to execute arbitrary code via a crafted Cisco Discovery Protocol packet, aka Bug IDs CSCtd75769, CSCtd75766, CSCtd75754, and CSCtd75761.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e11d.shtmlhttp://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e14e.shtmlhttp://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e14f.shtmlhttp://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e152.shtmlhttp://www.securitytracker.com/id?1025111http://www.securitytracker.com/id?1025112http://www.securitytracker.com/id?1025113http://www.securitytracker.com/id?1025114http://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e11d.shtmlhttp://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e14e.shtmlhttp://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e14f.shtmlhttp://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e152.shtmlhttp://www.securitytracker.com/id?1025111http://www.securitytracker.com/id?1025112http://www.securitytracker.com/id?1025113http://www.securitytracker.com/id?1025114
2011-02-25
Published