cbcvebase.
CVE-2015-6318
published 2015-10-12

CVE-2015-6318: Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.1 and X8.5.2 allows local users to write to arbitrary files via an unspecified symlink…

PriorityP424medium6.9CVSS 2.0
AVLACMAuNCCICAC
EPSS
0.36%
27.7th percentile
Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.1 and X8.5.2 allows local users to write to arbitrary files via an unspecified symlink attack, aka Bug ID CSCuv11969.

Affected

3 ranges
VendorProductVersion rangeFixed in
ciscotelepresence_video_communication_server_expressway_file_modification
ciscotelepresence_video_communication_server_software
ciscotelepresence_video_communication_server_software

CVSS provenance

nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
vendor_cisco4.4MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.