Cisco TelePresence TC Software 4.x through 6.x before 6.2.0 and TE Software 4.x and 6.0 allow remote authenticated users to execute arbitrary commands by using the commands as arguments to internal system scripts, aka Bug ID CSCue60211.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140430-tcte | Vendor Advisory |
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140430-tcte | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
21 Nov 2024, 02:05
Type | Values Removed | Values Added |
---|---|---|
References | () http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20140430-tcte - Vendor Advisory |
Information
Published : 2014-05-02 10:55
Updated : 2024-11-21 02:05
NVD link : CVE-2014-2169
Mitre link : CVE-2014-2169
CVE.ORG link : CVE-2014-2169
JSON object : View
Products Affected
cisco
- telepresence_tc_software
- telepresence_te_software
CWE
CWE-20
Improper Input Validation