cbcvebase.
CVE-2013-3454
published 2013-08-08

CVE-2013-3454: Cisco TelePresence System Software 1.10.1 and earlier on 500, 13X0, 1X00, 30X0, and 3X00 devices, and 6.0.3 and earlier on TX 9X00 devices, has a default…

PriorityP356critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
2.10%
79.5th percentile
Cisco TelePresence System Software 1.10.1 and earlier on 500, 13X0, 1X00, 30X0, and 3X00 devices, and 6.0.3 and earlier on TX 9X00 devices, has a default password for the pwrecovery account, which makes it easier for remote attackers to modify the configuration or perform arbitrary actions via HTTPS requests, aka Bug ID CSCui43128.

Affected

61 ranges· showing 25
VendorProductVersion rangeFixed in
ciscotelepresence_system_default_credentials
ciscotelepresence_system_software<= 1.10.1
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software
ciscotelepresence_system_software

CVSS provenance

nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_cisco10.0CRITICAL
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.