imPC@ndo IT

Tracker / CVE-2007-4747

CVE-2007-4747

High 10.0

The telnet service in Cisco Video Surveillance IP Gateway Encoder/Decoder (Standalone and Module) firmware 1.8.1 and earlier, Video Surveillance SP/ISP Decoder Software firmware 1.11.0 and earlier, and the Video Surveillance SP/ISP firmware 1.23.7 and earlier does not require authentication, which allows remote attackers to perform administrative actions, aka CSCsj31729.

Affected products and versions

cisco video_surveillance_ip_gateway_encoder_decoder · … → 1.8.1
cisco video_surveillance_sp_isp · … → 1.23.7
cisco video_surveillance_sp_isp_decoder_software · … → 1.11.0

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References