← Back to CVE List
Vulnerability Intelligence Report

CVE-2012-2486

The Cisco Discovery Protocol (CDP) implementation on Cisco TelePresence Multipoint Switch before 1.9.0, Cisco TelePresence Immersive Endpoint Devices before 1.9.1, Cisco TelePresence Manager before 1.9.0, and Cisco TelePresence Recording Server before 1.8.1 allows remote attackers to execute arbitrary code by leveraging certain adjacency and sending a malformed CDP packet, aka Bug IDs CSCtz40953, CSCtz40947, CSCtz40965, and CSCtz40953.

No Active Exploit Signals
CVSS Base Score
8.3
HIGH
EPSS Probability:1.75%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Affected Products & Versions

Vendor Product Affected Versions
cisco telepresence_multipoint_switch_software 1.0.4.0, 1.0.4.0\(21\), 1.1.0, 1.1.0\(254\), 1.1.1, 1.1.1\(30\), 1.1.2, 1.1.2\(6\), 1.5.0, 1.5.0\(222\), 1.5.1, 1.5.1\(2\), 1.5.2, 1.5.2\(21\), 1.5.3, 1.5.3.12, 1.5.4, 1.5.4\(4\), 1.5.5, 1.5.5\(1\), 1.5.6, 1.5.6\(1\), 1.6.0, 1.6.0\(108\), 1.6.1, 1.6.1\(2\), 1.6.2, 1.6.2\(3\), 1.6.3, 1.6.3\(2\), 1.6.4, 1.6.4\(3\), 1.7.0, 1.7.0.1\(5\), 1.7.1\(15\), 1.7.2\(75\), 1.7.3\(2\), 1.8.0, 1.8.0\(1026\), 1.8.1\(1041\), 1.8.2, 1.8.2\(2\)
cisco telepresence_multipoint_switch all
cisco telepresence_system_software 1.2.3\(1101\), 1.3.2\(1393\), 1.4.7\(2229\), 1.5.1\(2082\), 1.5.3\(2115\), 1.5.10\(3648\), 1.5.11\(3659\), 1.5.12\(3701\), 1.5.13\(3717\), 1.6.0\(3954\), 1.6.2\(4023\), 1.6.3\(4042\), 1.6.4\(4072\), 1.6.5\(4097\), 1.6.6\(4109\), 1.6.7\(4212\), 1.6.8\(4222\), 1.7.0.1\(4764\), 1.7.0.2\(4719\), 1.7.1\(4864\), 1.7.2\(4937\), 1.7.2.1\(2\), 1.7.4\(270\), 1.7.5\(42\), 1.7.6\(4\), 1.8.0\(55\), 1.8.1\(34\), 1.8.2\(11\), 1.8.3\(4\), 1.9.0\(46\), 4.0.0
cisco telepresence_system_1300_65 all
cisco telepresence_system_3000 all
cisco telepresence_system_3010 all
cisco telepresence_system_3200 all
cisco telepresence_system_3210 all
cisco telepresence_system_t3 all
cisco telepresence_system_tx1300_47 all
cisco telepresence_system_tx1310_65 all
cisco telepresence_system_tx9000 all
cisco telepresence_system_tx9200 all
cisco telepresence_manager 1.1.0.0, 1.1.0.0\(209\), 1.2.0.0, 1.2.0.0\(200\), 1.3.2\(466\), 1.4.0\(279\), 1.5.1\(420\), 1.5.2\(423\), 1.6.0\(220\), 1.6.2\(64\), 1.6.3\(113\), 1.6.5\(167\), 1.7.1\(732\), 1.7.2\(256\), 1.7.3.1, 1.7.4, 1.7.5\(62\), 1.8.0\(582\)
cisco telepresence_recording_server 1.6.1\(2\), 1.6.2\(31\), 1.6.3\(4\), 1.7.0\(190\), 1.7.1\(22\), 1.7.2.1, 1.7.3\(3\)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
1.745%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityCisco Systems, Inc. · Hosted Service · USA
Reserved2012-05-07T00:00:00
Published2012-07-12T10:00:00
Last Updated2024-09-17T04:25:44

LINK COPIED TO CLIPBOARD