Severity
10.0CRITICAL
EPSS
2.5%
top 14.68%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 25
Latest updateMay 17

Description

Cisco TelePresence Manager 1.2.x through 1.6.x allows remote attackers to perform unspecified actions and consequently execute arbitrary code via a crafted request to the Java RMI interface, related to a "command injection vulnerability," aka Bug ID CSCtf97085.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

NVDcisco/telepresence_manager9 versions+8

🔴Vulnerability Details

2
GHSA
GHSA-5c56-7q2q-qv2j: Cisco TelePresence Manager 12022-05-17
CVEList
CVE-2011-0381: Cisco TelePresence Manager 12011-02-25

📋Vendor Advisories

1
Cisco
Multiple Vulnerabilities in Cisco TelePresence Manager2011-02-23