Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-3815

Опубликовано: 17 мар. 2017
Источник: nvd
CVSS3: 5.3
CVSS2: 5
EPSS Низкий

Описание

An API Privilege vulnerability in Cisco TelePresence Server Software could allow an unauthenticated, remote attacker to emulate Cisco TelePresence Server endpoints. Affected Products: This vulnerability affects Cisco TelePresence Server MSE 8710 Processors that are running a software release prior to Cisco TelePresence Software Release 4.3 and are running in locally managed mode. The vulnerable API was deprecated in Cisco TelePresence Software Release 4.3. More Information: CSCvc37616.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:cisco:telepresence_server_software:4.2\(4.17\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_server_software:4.2\(4.18\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_server_software:4.2\(4.19\):*:*:*:*:*:*:*

EPSS

Процентиль: 33%
0.0013
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-319

Связанные уязвимости

CVSS3: 5.3
github
больше 3 лет назад

An API Privilege vulnerability in Cisco TelePresence Server Software could allow an unauthenticated, remote attacker to emulate Cisco TelePresence Server endpoints. Affected Products: This vulnerability affects Cisco TelePresence Server MSE 8710 Processors that are running a software release prior to Cisco TelePresence Software Release 4.3 and are running in locally managed mode. The vulnerable API was deprecated in Cisco TelePresence Software Release 4.3. More Information: CSCvc37616.

fstec
почти 9 лет назад

Уязвимость микропрограммного обеспечения устройства управления конференц-связью Cisco TelePresence Server, позволяющая нарушителю эмулировать конечные точки сервера

EPSS

Процентиль: 33%
0.0013
Низкий

5.3 Medium

CVSS3

5 Medium

CVSS2

Дефекты

CWE-319