Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-0675

Опубликовано: 23 янв. 2014
Источник: nvd
CVSS2: 6.4
EPSS Низкий

Описание

The Expressway component in Cisco TelePresence Video Communication Server (VCS) uses the same default X.509 certificate across different customers' installations, which makes it easier for remote attackers to conduct man-in-the-middle attacks against SSL sessions by leveraging the certificate's trust relationship, aka Bug ID CSCue07471.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:h:cisco:telepresence_video_communication_server:-:*:*:*:*:*:*:*

EPSS

Процентиль: 63%
0.00448
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-255

Связанные уязвимости

github
больше 3 лет назад

The Expressway component in Cisco TelePresence Video Communication Server (VCS) uses the same default X.509 certificate across different customers' installations, which makes it easier for remote attackers to conduct man-in-the-middle attacks against SSL sessions by leveraging the certificate's trust relationship, aka Bug ID CSCue07471.

EPSS

Процентиль: 63%
0.00448
Низкий

6.4 Medium

CVSS2

Дефекты

CWE-255