Vulnerabilities > Cisco > Telepresence Ix5000

DATE CVE VULNERABILITY TITLE RISK
2017-05-18 CVE-2017-6652 Improper Input Validation vulnerability in Cisco Telepresence Ix5000 8.2.0Base
A vulnerability in the web framework of the Cisco TelePresence IX5000 Series could allow an unauthenticated, remote attacker to access arbitrary files on an affected device.
network
low complexity
cisco CWE-20
5.0
2015-02-12 CVE-2015-0611 Permissions, Privileges, and Access Controls vulnerability in Cisco Telepresence System Software IX 8.0.0/8.0.1
The administrative web-management portal in Cisco IX 8 (.0.1) and earlier on Cisco TelePresence IX5000 devices does not properly restrict the device-recovery account's access, which allows remote authenticated users to obtain HelpDesk-equivalent privileges by leveraging device-recovery authentication, aka Bug ID CSCus74174.
network
low complexity
cisco CWE-264
6.5