Severity
7.6HIGH
EPSS
7.4%
top 8.25%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 2
Latest updateMay 17

Description

Buffer overflow in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x and 6.0 allows remote attackers to execute arbitrary code via crafted DNS response packets, aka Bug ID CSCty44804.

CVSS vector

AV:N/AC:H/C:C/I:C/A:CExploitability: 4.9 | Impact: 10.0

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-w8h8-3h8g-5c5r: Buffer overflow in Cisco TelePresence TC Software 42022-05-17
CVEList
CVE-2014-2168: Buffer overflow in Cisco TelePresence TC Software 42014-05-02

💥Exploits & PoCs

1
Exploit-DB
Asx to Mp3 2.7.5 - Local Stack Overflow2014-10-07

📋Vendor Advisories

1
Cisco
Multiple Vulnerabilities in Cisco TelePresence TC and TE Software2014-04-30