PT-2011-2309 · Cisco · Cisco Telepresence Multipoint Switch
Published
2011-02-25
·
Updated
2017-08-17
·
CVE-2011-0387
CVSS v2.0
8.0
High
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:C |
Name of the Vulnerable Software and Affected Versions
Cisco TelePresence Multipoint Switch (CTMS) versions 1.0.x through 1.6.x
Description
The administrative web interface on CTMS devices allows remote authenticated users to cause a denial of service or have unspecified other impact via vectors involving access to a servlet.
Recommendations
For CTMS versions 1.0.x through 1.6.x, consider restricting access to the administrative web interface as a temporary workaround until a patch is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Telepresence Multipoint Switch