PT-2022-6307 · Cisco · Cisco Touch 10+2
Published
2022-10-05
·
Updated
2025-07-30
·
CVE-2022-20793
CVSS v2.0
7.1
High
| Vector | AV:N/AC:H/Au:N/C:C/I:C/A:N |
Name of the Vulnerable Software and Affected Versions
Cisco TelePresence CE Software and RoomOS Software for Cisco Touch 10 Devices (affected versions not specified)
Description
A vulnerability in the pairing process could allow an unauthenticated, remote attacker to impersonate a legitimate device and pair with an affected device due to insufficient identity verification. An attacker could exploit this by responding to the pairing broadcast from an affected device, potentially allowing access to the device while impersonating a legitimate one.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Telepresence Ce
Cisco Touch 10
Roomos