Cisco TelePresence Video Communication Server (VCS) X7.0.3 does not properly process certain search rules, which allows remote attackers to create conferences via an unspecified Conductor request, aka Bug ID CSCub67989.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-5444 | Vendor Advisory |
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-5444 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 01:44
Type | Values Removed | Values Added |
---|---|---|
References | () http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2012-5444 - Vendor Advisory |
Information
Published : 2013-01-17 15:55
Updated : 2024-11-21 01:44
NVD link : CVE-2012-5444
Mitre link : CVE-2012-5444
CVE.ORG link : CVE-2012-5444
JSON object : View
Products Affected
cisco
- telepresence_video_communication_servers_software
- telepresence_video_communication_server
CWE
CWE-264
Permissions, Privileges, and Access Controls