Severity
9.0CRITICAL
EPSS
0.7%
top 27.74%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 2
Latest updateMay 17

Description

Cisco TelePresence TC Software 4.x and 5.x before 5.1.7 and 6.x before 6.0.1 and TE Software 4.x and 6.0 allow remote authenticated users to execute arbitrary commands by using the commands as arguments to tshell (aka tcsh) scripts, aka Bug ID CSCue60202.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 8.0 | Impact: 10.0

Affected Packages2 packages

🔴Vulnerability Details

2
GHSA
GHSA-jc6g-gfgq-7cj3: Cisco TelePresence TC Software 42022-05-17
CVEList
CVE-2014-2170: Cisco TelePresence TC Software 42014-05-02

📋Vendor Advisories

1
Cisco
Multiple Vulnerabilities in Cisco TelePresence TC and TE Software2014-04-30