Vulnerabilities > Cisco > Telepresence Manager > 1.6.3

DATE CVE VULNERABILITY TITLE RISK
2011-02-25 CVE-2011-0381 OS Command Injection vulnerability in Cisco Telepresence Manager
Cisco TelePresence Manager 1.2.x through 1.6.x allows remote attackers to perform unspecified actions and consequently execute arbitrary code via a crafted request to the Java RMI interface, related to a "command injection vulnerability," aka Bug ID CSCtf97085.
network
low complexity
cisco CWE-78
critical
10.0
2011-02-25 CVE-2011-0380 Improper Authentication vulnerability in Cisco Telepresence Manager
Cisco TelePresence Manager 1.2.x through 1.6.x allows remote attackers to bypass authentication and invoke arbitrary methods via a malformed SOAP request, aka Bug ID CSCtc59562.
network
low complexity
cisco CWE-287
7.5