← Back to CVE List
Vulnerability Intelligence Report

CVE-2012-3075

The administrative web interface on Cisco TelePresence Immersive Endpoint Devices before 1.7.4 allows remote authenticated users to execute arbitrary commands via a malformed request on TCP port 443, aka Bug ID CSCtn99724.

No Active Exploit Signals
CVSS Base Score
9.0
HIGH
EPSS Probability:2.17%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Affected Products & Versions

Vendor Product Affected Versions
cisco telepresence_system_software 1.2.3\(1101\), 1.3.2\(1393\), 1.4.7\(2229\), 1.5.1\(2082\), 1.5.3\(2115\), 1.5.10\(3648\), 1.5.11\(3659\), 1.5.12\(3701\), 1.5.13\(3717\), 1.6.0\(3954\), 1.6.2\(4023\), 1.6.3\(4042\), 1.6.4\(4072\), 1.6.5\(4097\), 1.6.6\(4109\), 1.6.7\(4212\), 1.6.8\(4222\), 1.7.0.1\(4764\), 1.7.0.2\(4719\), 1.7.1\(4864\), 1.7.2.1\(2\)
cisco telepresence_system_1300_65 all
cisco telepresence_system_3000 all
cisco telepresence_system_3010 all
cisco telepresence_system_3200 all
cisco telepresence_system_3210 all
cisco telepresence_system_t3 all
cisco telepresence_system_tx1300_47 all
cisco telepresence_system_tx1310_65 all
cisco telepresence_system_tx9000 all
cisco telepresence_system_tx9200 all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
2.165%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityCisco Systems, Inc. · Hosted Service · USA
Reserved2012-05-30T00:00:00
Published2012-07-12T10:00:00
Last Updated2024-09-16T21:07:46

LINK COPIED TO CLIPBOARD