CVE-2011-0384 Information

Description

The Java Servlet framework on Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x 1.1.x 1.5.x and 1.6.x does not require administrative authentication for unspecified actions which allows remote attackers to execute arbitrary code via a crafted request aka Bug ID CSCtf01253.

Reference

http://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e14e.shtml http://www.securityfocus.com/bid/46520 http://www.securitytracker.com/id?1025113 https://exchange.xforce.ibmcloud.com/vulnerabilities/65620

Share on: