Vulnerabilities > Cisco > Telepresence TC Software

DATE CVE VULNERABILITY TITLE RISK
2014-05-02 CVE-2014-2163 Improper Input Validation vulnerability in Cisco Telepresence TC Software and Telepresence TE Software
The SIP implementation in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCua64961.
network
low complexity
cisco CWE-20
7.8
2014-05-02 CVE-2014-2162 Improper Input Validation vulnerability in Cisco Telepresence TC Software and Telepresence TE Software
The SIP implementation in Cisco TelePresence TC Software 4.x and 5.x and TE Software 4.x and 6.0 allows remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCud29566.
network
low complexity
cisco CWE-20
7.8
2013-07-10 CVE-2013-3405 Permissions, Privileges, and Access Controls vulnerability in Cisco Telepresence TC Software
The web portal in TC software on Cisco TelePresence endpoints does not require an exact password match during a login attempt by a user who has not configured a password, which allows remote attackers to bypass authentication by sending an arbitrary password, aka Bug ID CSCud96071.
network
cisco CWE-264
4.3
2013-07-02 CVE-2013-3401 Security Bypass vulnerability in Cisco TelePresence TC Software
The SIP implementation in Cisco TelePresence TC Software allows remote attackers to trigger unintended use of NOTIFY messages via unspecified vectors, aka Bug ID CSCud96080.
network
cisco
4.3
2013-06-21 CVE-2013-3379 Permissions, Privileges, and Access Controls vulnerability in Cisco Telepresence TC Software
The firewall subsystem in Cisco TelePresence TC Software before 4.2 does not properly implement rules that grant access to hosts, which allows remote attackers to obtain shell access with root privileges by leveraging connectivity to the management network, aka Bug ID CSCts37781.
low complexity
cisco CWE-264
8.3
2013-06-21 CVE-2013-3378 Improper Input Validation vulnerability in Cisco Telepresence TC Software and Telepresence TE Software
Cisco TelePresence TC Software before 6.1 and TE Software before 4.1.3 allow remote attackers to cause a denial of service (temporary device hang) via crafted SIP packets, aka Bug ID CSCuf89557.
network
low complexity
cisco CWE-20
7.8
2013-06-21 CVE-2013-3377 Resource Management Errors vulnerability in Cisco products
Cisco TelePresence TC Software before 5.1.7 and TE Software before 4.1.3 allow remote attackers to cause a denial of service (device reload) via crafted SIP packets, aka Bug ID CSCue01743.
network
low complexity
cisco CWE-399
7.8