The Java Servlet framework on Cisco TelePresence Recording Server devices with software 1.6.x before 1.6.2 and Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x does not require administrative authentication for unspecified actions, which allows remote attackers to execute arbitrary code via a crafted request, aka Bug IDs CSCtf42005 and CSCtf42008.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: cisco

Published: 2011-02-25T11:00:00

Updated: 2017-08-16T14:57:01

Reserved: 2011-01-07T00:00:00


Link: CVE-2011-0383

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2011-02-25T12:00:18.603

Modified: 2017-08-17T01:33:27.823


Link: CVE-2011-0383

JSON object: View

cve-icon Redhat Information

No data.

CWE