// For flags

CVE-2011-0383

 

Severity Score

10.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

0
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

The Java Servlet framework on Cisco TelePresence Recording Server devices with software 1.6.x before 1.6.2 and Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x does not require administrative authentication for unspecified actions, which allows remote attackers to execute arbitrary code via a crafted request, aka Bug IDs CSCtf42005 and CSCtf42008.

Java Servlet framework en dispositivos Cisco TelePresence Recording Server devices con software v1.6.x anterior a v1.6.2 y Cisco TelePresence Multipoint Switch (CTMS) con software v1.0.x, v1.1.x, v1.5.x, y v1.6.x no requiere autenticación administrativa para acciones no especificadas, permitiendo a atacantes remotos ejecutar código arbitrario mediante una petición manipulada, también conocido como error ID CSCtf42005 and CSCtf42008.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
Complete
Integrity
Complete
Availability
Complete
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2011-01-07 CVE Reserved
  • 2011-02-23 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-06 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
  • ---------- First Exploit
CWE
  • CWE-287: Improper Authentication
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Cisco
Search vendor "Cisco"
Telepresence Recording Server Software
Search vendor "Cisco" for product "Telepresence Recording Server Software"
1.6.1
Search vendor "Cisco" for product "Telepresence Recording Server Software" and version "1.6.1"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Recording Server
Search vendor "Cisco" for product "Telepresence Recording Server"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.0.4.0
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.0.4.0"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.1.0
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.1.0"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.1.1
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.1.1"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.1.2
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.1.2"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.5.0
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.5.0"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.5.1
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.5.1"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.5.2
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.5.2"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.5.3
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.5.3"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.5.4
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.5.4"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.5.5
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.5.5"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.5.6
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.5.6"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.6.0
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.6.0"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.6.1
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.6.1"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.6.2
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.6.2"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.6.3
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.6.3"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected
Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch Software
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software"
1.6.4
Search vendor "Cisco" for product "Telepresence Multipoint Switch Software" and version "1.6.4"
-
Affected
in Cisco
Search vendor "Cisco"
Telepresence Multipoint Switch
Search vendor "Cisco" for product "Telepresence Multipoint Switch"
*-
Affected