Skip to main content

Vendor/product archive

cisco / telepresence_tc_software CVEs

Beta · best-effort

27 CVEs tagged to cisco / telepresence_tc_software4 Critical, 15 High, 8 Medium, 0 Low, 0 Unrated.

CVE-2016-6459

Published Nov 19, 2016

Cisco TelePresence endpoints running either CE or TC software contain a vulnerability that could allow an authenticated, local attacker to execute a local shell command injection.…

CVSS 5.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2016-1387

Published May 5, 2016

The XML API in TelePresence Codec (TC) 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.3.2, 7.3.3, 7.3.4, and 7.3.5 and Collaboration Endpoint (CE) 8.0.0, 8.0.1, and 8.1.0 in Cisco TelePresence Sof…

CVSS 9.8 · Critical
evidence mentions
2
Buzz score
17.5
Vendor/product tagsBeta · best-effort

CVE-2015-4271

Published Jul 15, 2015

Cisco TelePresence TC before 7.3.4 on Integrator C devices allows remote attackers to bypass authentication via vectors involving multiple request parameters, aka Bug ID CSCuv0060…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-0770

Published Jun 7, 2015

CRLF injection vulnerability in Cisco TelePresence TC 6.x before 6.3.4 and 7.x before 7.3.3 on Integrator C SX20 devices allows remote attackers to inject arbitrary HTTP headers a…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-0697

Published Apr 15, 2015

Open redirect vulnerability in the login page in Cisco TC Software before 6.3-26 and 7.x before 7.3.0 on Cisco TelePresence Collaboration Desk and Room Endpoints devices allows re…

CVSS 5.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2015-0696

Published Apr 15, 2015

Cross-site scripting (XSS) vulnerability in the login page in Cisco TC Software before 7.1.0 on Cisco TelePresence Collaboration Desk and Room Endpoints devices allows remote atta…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-3405

Published Jul 10, 2013

The web portal in TC software on Cisco TelePresence endpoints does not require an exact password match during a login attempt by a user who has not configured a password, which al…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-3401

Published Jul 2, 2013

The SIP implementation in Cisco TelePresence TC Software allows remote attackers to trigger unintended use of NOTIFY messages via unspecified vectors, aka Bug ID CSCud96080.

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-3379

Published Jun 21, 2013

The firewall subsystem in Cisco TelePresence TC Software before 4.2 does not properly implement rules that grant access to hosts, which allows remote attackers to obtain shell acc…

CVSS 8.3 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 27 CVEsPage 1 of 2