imPC@ndo IT

Tracker / CVE-2012-3075

CVE-2012-3075

High 9.0

The administrative web interface on Cisco TelePresence Immersive Endpoint Devices before 1.7.4 allows remote authenticated users to execute arbitrary commands via a malformed request on TCP port 443, aka Bug ID CSCtn99724.

Affected products and versions

cisco telepresence_system_1300_65
cisco telepresence_system_3000
cisco telepresence_system_3010
cisco telepresence_system_3200
cisco telepresence_system_3210
cisco telepresence_system_software
cisco telepresence_system_software · … → 1.7.2\(4937\)
cisco telepresence_system_t3
cisco telepresence_system_tx1300_47
cisco telepresence_system_tx1310_65
cisco telepresence_system_tx9000
cisco telepresence_system_tx9200

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References