Vulnerability Intelligence Report
CVE-2012-3074
An unspecified API on Cisco TelePresence Immersive Endpoint Devices before 1.9.1 allows remote attackers to execute arbitrary commands by leveraging certain adjacency and sending a malformed request on TCP port 61460, aka Bug ID CSCtz38382.
No Active Exploit Signals
CVSS Base Score
8.3
HIGH
EPSS Probability:1.16%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| cisco | telepresence_system_software | 1.2.3\(1101\), 1.3.2\(1393\), 1.4.7\(2229\), 1.5.1\(2082\), 1.5.3\(2115\), 1.5.10\(3648\), 1.5.11\(3659\), 1.5.12\(3701\), 1.5.13\(3717\), 1.6.0\(3954\), 1.6.2\(4023\), 1.6.3\(4042\), 1.6.4\(4072\), 1.6.5\(4097\), 1.6.6\(4109\), 1.6.7\(4212\), 1.6.8\(4222\), 1.7.0.1\(4764\), 1.7.0.2\(4719\), 1.7.1\(4864\), 1.7.2\(4937\), 1.7.2.1\(2\), 1.7.4\(270\), 1.7.5\(42\), 1.7.6\(4\), 1.8.0\(55\), 1.8.1\(34\), 1.8.2\(11\), 1.8.3\(4\), 1.9.0\(46\) |
| cisco | telepresence_system_1300_65 | all |
| cisco | telepresence_system_3000 | all |
| cisco | telepresence_system_3010 | all |
| cisco | telepresence_system_3200 | all |
| cisco | telepresence_system_3210 | all |
| cisco | telepresence_system_t3 | all |
| cisco | telepresence_system_tx1300_47 | all |
| cisco | telepresence_system_tx1310_65 | all |
| cisco | telepresence_system_tx9000 | all |
| cisco | telepresence_system_tx9200 | all |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
1.159%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Cisco Systems, Inc. · Hosted Service · USA |
| Reserved | 2012-05-30T00:00:00 |
| Published | 2012-07-12T10:00:00 |
| Last Updated | 2024-09-16T19:34:59 |
Community Chatter & Buzz