The administrative web interface in Cisco TelePresence Video Communication Server Expressway X8.5.2 allows remote authenticated users to execute arbitrary commands via crafted fields, aka Bug ID CSCuv12531.
References
Configurations
History
21 Nov 2024, 02:46
Type | Values Removed | Values Added |
---|---|---|
References | () http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160803-vcse - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/92274 - | |
References | () http://www.securitytracker.com/id/1036529 - |
Information
Published : 2016-08-08 00:59
Updated : 2024-11-21 02:46
NVD link : CVE-2016-1468
Mitre link : CVE-2016-1468
CVE.ORG link : CVE-2016-1468
JSON object : View
Products Affected
cisco
- telepresence_video_communication_server
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')