Vulnerabilities > Cisco > Telepresence Collaboration Endpoint > High

DATE CVE VULNERABILITY TITLE RISK
2023-01-20 CVE-2023-20008 Unspecified vulnerability in Cisco Roomos and Telepresence Collaboration Endpoint
A vulnerability in the CLI of Cisco TelePresence CE and RoomOS Software could allow an authenticated, local attacker to overwrite arbitrary files on the local system of an affected device. This vulnerability is due to improper access controls on files that are in the local file system.
local
low complexity
cisco
7.1
2022-10-26 CVE-2022-20811 Path Traversal vulnerability in Cisco Roomos and Telepresence Collaboration Endpoint
Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an attacker to conduct path traversal attacks, view sensitive data, or write arbitrary files on an affected device.
network
low complexity
cisco CWE-22
7.2
2022-10-26 CVE-2022-20954 Path Traversal vulnerability in Cisco Roomos and Telepresence Collaboration Endpoint
Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an attacker to conduct path traversal attacks, view sensitive data, or write arbitrary files on an affected device.
local
low complexity
cisco CWE-22
7.1
2022-10-26 CVE-2022-20955 Path Traversal vulnerability in Cisco Roomos and Telepresence Collaboration Endpoint
Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an attacker to conduct path traversal attacks, view sensitive data, or write arbitrary files on an affected device.
local
low complexity
cisco CWE-22
7.1
2022-05-04 CVE-2022-20764 Unspecified vulnerability in Cisco Telepresence Collaboration Endpoint
Multiple vulnerabilities in the web engine of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow a remote attacker to cause a denial of service (DoS) condition, view sensitive data on an affected device, or redirect users to an attacker-controlled destination.
network
low complexity
cisco
8.1
2022-04-21 CVE-2022-20783 Improper Input Validation vulnerability in Cisco Roomos and Telepresence Collaboration Endpoint
A vulnerability in the packet processing functionality of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-20
7.5
2020-09-23 CVE-2019-15289 Improper Input Validation vulnerability in Cisco Roomos and Telepresence Collaboration Endpoint
Multiple vulnerabilities in the video service of Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS Software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device.
network
low complexity
cisco CWE-20
7.5
2020-06-18 CVE-2020-3336 OS Command Injection vulnerability in Cisco Roomos and Telepresence Collaboration Endpoint
A vulnerability in the software upgrade process of Cisco TelePresence Collaboration Endpoint Software and Cisco RoomOS Software could allow an authenticated, remote attacker to modify the filesystem to cause a denial of service (DoS) or gain privileged access to the root filesystem.
network
low complexity
cisco CWE-78
7.2
2019-11-26 CVE-2019-15288 Improper Input Validation vulnerability in Cisco products
A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE), Cisco TelePresence Codec (TC), and Cisco RoomOS Software could allow an authenticated, remote attacker to escalate privileges to an unrestricted user of the restricted shell.
network
low complexity
cisco CWE-20
8.8