Vulnerability Intelligence Report
CVE-2012-3075
The administrative web interface on Cisco TelePresence Immersive Endpoint Devices before 1.7.4 allows remote authenticated users to execute arbitrary commands via a malformed request on TCP port 443, aka Bug ID CSCtn99724.
No Active Exploit Signals
CVSS Base Score
9.0
HIGH
EPSS Probability:2.17%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| cisco | telepresence_system_software | 1.2.3\(1101\), 1.3.2\(1393\), 1.4.7\(2229\), 1.5.1\(2082\), 1.5.3\(2115\), 1.5.10\(3648\), 1.5.11\(3659\), 1.5.12\(3701\), 1.5.13\(3717\), 1.6.0\(3954\), 1.6.2\(4023\), 1.6.3\(4042\), 1.6.4\(4072\), 1.6.5\(4097\), 1.6.6\(4109\), 1.6.7\(4212\), 1.6.8\(4222\), 1.7.0.1\(4764\), 1.7.0.2\(4719\), 1.7.1\(4864\), 1.7.2.1\(2\) |
| cisco | telepresence_system_1300_65 | all |
| cisco | telepresence_system_3000 | all |
| cisco | telepresence_system_3010 | all |
| cisco | telepresence_system_3200 | all |
| cisco | telepresence_system_3210 | all |
| cisco | telepresence_system_t3 | all |
| cisco | telepresence_system_tx1300_47 | all |
| cisco | telepresence_system_tx1310_65 | all |
| cisco | telepresence_system_tx9000 | all |
| cisco | telepresence_system_tx9200 | all |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
EPSS Score
2.165%
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Cisco Systems, Inc. · Hosted Service · USA |
| Reserved | 2012-05-30T00:00:00 |
| Published | 2012-07-12T10:00:00 |
| Last Updated | 2024-09-16T21:07:46 |
Community Chatter & Buzz