Vulnerabilities > Cisco > Telepresence System Software

DATE CVE VULNERABILITY TITLE RISK
2011-02-25 CVE-2011-0376 Information Exposure vulnerability in Cisco products
The TFTP implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x, 1.6.0, and 1.6.1 allows remote attackers to obtain sensitive information via a GET request, aka Bug ID CSCte43876.
network
low complexity
cisco CWE-200
critical
10.0
2011-02-25 CVE-2011-0375 OS Command Injection vulnerability in Cisco products
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCth24671.
network
low complexity
cisco CWE-78
critical
9.0
2011-02-25 CVE-2011-0374 OS Command Injection vulnerability in Cisco products
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31659.
network
low complexity
cisco CWE-78
critical
9.0
2011-02-25 CVE-2011-0373 OS Command Injection vulnerability in Cisco products
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31685.
network
low complexity
cisco CWE-78
critical
9.0
2011-02-25 CVE-2011-0372 OS Command Injection vulnerability in Cisco products
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote attackers to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31640.
network
low complexity
cisco CWE-78
critical
10.0