PT-2011-2303 · Cisco+1 · Cisco Telepresence Manager+1

Publicado

2011-02-25

·

Atualizado

2017-08-17

·

CVE-2011-0381

CVSS v2.0

10

Alta

VetorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Cisco TelePresence Manager versions 1.2.x through 1.6.x
Description The issue allows remote attackers to perform unspecified actions and consequently execute arbitrary code via a crafted request to the Java RMI interface, related to a command injection vulnerability.
Recommendations For versions 1.2.x through 1.6.x, consider restricting access to the Java RMI interface as a temporary workaround until a patch is available.

Correção

OS Command Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2011-0381

Produtos afetados

Cisco Telepresence Manager
Java Rmi