Vulnerabilities > Cisco > Telepresence E20 Software

DATE CVE VULNERABILITY TITLE RISK
2012-01-19 CVE-2011-4659 Permissions, Privileges, and Access Controls vulnerability in Cisco IP Video Phone E20 and Telepresence E20 Software
Cisco TelePresence Software before TE 4.1.1 on the Cisco IP Video Phone E20 has a default password for the root account after an upgrade to TE 4.1.0, which makes it easier for remote attackers to modify the configuration via an SSH session, aka Bug ID CSCtw69889, a different vulnerability than CVE-2011-2555.
network
low complexity
cisco CWE-264
critical
10.0
2011-08-31 CVE-2011-2577 Remote Denial of Service vulnerability in Cisco TelePresence Codecs SIP Packet
Unspecified vulnerability in Cisco TelePresence C Series Endpoints, E/EX Personal Video units, and MXP Series Codecs, when using software versions before TC 4.0.0 or F9.1, allows remote attackers to cause a denial of service (crash) via a crafted SIP packet to port 5060 or 5061, aka Bug ID CSCtq46500.
network
low complexity
cisco
7.8