CVE-2017-3815
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
An API Privilege vulnerability in Cisco TelePresence Server Software could allow an unauthenticated, remote attacker to emulate Cisco TelePresence Server endpoints. Affected Products: This vulnerability affects Cisco TelePresence Server MSE 8710 Processors that are running a software release prior to Cisco TelePresence Software Release 4.3 and are running in locally managed mode. The vulnerable API was deprecated in Cisco TelePresence Software Release 4.3. More Information: CSCvc37616.
Una vulnerabilidad de privilegios de API en Cisco TelePresence Server Software podría permitir que un atacante remoto no autenticado emule los puntos finales de Cisco TelePresence Server. Productos afectados: Esta vulnerabilidad afecta a los procesadores Cisco TelePresence Server MSE 8710 que ejecutan una versión de software anterior a Cisco TelePresence Software Release 4.3 y se ejecutan en modo administrado localmente. El API vulnerable estaba obsoleto en Cisco TelePresence Software Release 4.3. Más información: CSCvc37616.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-12-21 CVE Reserved
- 2017-03-17 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-05 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-319: Cleartext Transmission of Sensitive Information
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/96922 | Third Party Advisory | |
http://www.securitytracker.com/id/1038035 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20170315-tps | 2019-10-03 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Telepresence Server Software Search vendor "Cisco" for product "Telepresence Server Software" | 4.2\(4.17\) Search vendor "Cisco" for product "Telepresence Server Software" and version "4.2\(4.17\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Telepresence Server Software Search vendor "Cisco" for product "Telepresence Server Software" | 4.2\(4.18\) Search vendor "Cisco" for product "Telepresence Server Software" and version "4.2\(4.18\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Telepresence Server Software Search vendor "Cisco" for product "Telepresence Server Software" | 4.2\(4.19\) Search vendor "Cisco" for product "Telepresence Server Software" and version "4.2\(4.19\)" | - |
Affected
|