Telepresence System Software

Vendor:

First CVE: Feb 25, 2011 · Active for 15 years

25
Total CVEs
More Total CVEs than 96% of tracked products
6.3
Avg CVEs / Year
Higher CVE frequency than 93% of tracked products
8.1
Avg CVSS
Higher Avg CVSS than 73% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Telepresence System Software over time

Volume of CVEsAvg CVSS Base Score
First CVE
Feb 25, 2011
15 years ago
Most Recent CVE
Sep 12, 2014
4,336 days ago

CVE Severity & Scoring

Telepresence System Software25 CVEs
All CVEs352,785 CVEs
MediumHigh
Attack Vector
Local0 (0.0%)
Network0 (0.0%)
Unknown25 (100.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low0 (0.0%)
High0 (0.0%)
Unknown25 (100.0%)
User Interaction
None0 (0.0%)
Unknown25 (100.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None0 (0.0%)
Unknown25 (100.0%)

Top CVEs

Signals from CVEs in this product scope (25 CVEs).

25 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
The TFTP implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x, 1.6.0, and 1.6.1 allows remote attackers to obtain sensitive information via a GET
Feb 25, 201110.029NONO
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote attackers to execute arbitrary commands via a malformed request, relat
Feb 25, 201110.029NONO
The administrative web interface on Cisco TelePresence Immersive Endpoint Devices before 1.7.4 allows remote authenticated users to execute arbitrary commands via a malformed reque
Jul 12, 20129.027NONO
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x allows remote authenticated users to execute arbitrary commands via a malformed requ
Feb 25, 20119.027NONO
Memory leak in Cisco TelePresence System Edge MXP Series Software F9.3.3 and earlier allows remote attackers to cause a denial of service (management outage) via multiple TELNET co
Sep 12, 20147.826NONO
The System Status Collection Daemon (SSCD) in Cisco TelePresence System 500-37, 1000, 1300-65, and 3xxx before 1.10.2(42), and 500-32, 1300-47, TX1310 65, and TX9xxx before 6.0.4(1
Jan 22, 20148.326NONO
Cisco TelePresence System Software 1.10.1 and earlier on 500, 13X0, 1X00, 30X0, and 3X00 devices, and 6.0.3 and earlier on TX 9X00 devices, has a default password for the pwrecover
Aug 8, 201310.026NONO
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote authenticated users to execute arbitrary commands via a malformed requ
Feb 25, 20119.026NONO
An unspecified API on Cisco TelePresence Immersive Endpoint Devices before 1.9.1 allows remote attackers to execute arbitrary commands by leveraging certain adjacency and sending a
Jul 12, 20128.325NONO
The Cisco Discovery Protocol (CDP) implementation on Cisco TelePresence Multipoint Switch before 1.9.0, Cisco TelePresence Immersive Endpoint Devices before 1.9.1, Cisco TelePresen
Jul 12, 20128.325NONO

Exploit Exposure

Signals from CVEs in this product scope (25 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (25 CVEs).

Media Mentions

Signals from CVEs in this product scope (25 CVEs).

Top CNAs Publishing CVEs For Telepresence System Software

Top CWEs

Versions

VersionCVE CountAvg CVSSAvg EPSSKEVExploits
x6.127.71.3%00
x6.027.71.3%00
x5.227.71.3%00
fnc9.377.61.6%00
fnc9.1.277.61.6%00
fnc9.1.177.61.6%00
fnc9.1.077.61.6%00
f9.3.117.82.8%00
f9.317.82.8%00
f9.1.277.61.6%00
f9.1.177.61.6%00
f9.1.077.61.6%00
f9.0.277.61.6%00
f9.0.177.61.6%00
6.1.0\(90\)18.32.3%00
6.0.4\(11\)14.31.1%00
6.0.3\(33\)14.31.1%00
6.0.2\(28\)37.51.8%00
6.0.1\(50\)37.51.8%00
6.0.0.1\(4\)37.51.8%00