imPC@ndo IT

Tracker / CVE-2011-0392

CVE-2011-0392

High 7.5

Cisco TelePresence Recording Server devices with software 1.6.x do not require authentication for an XML-RPC interface, which allows remote attackers to perform unspecified actions via a session on TCP port 8080, aka Bug ID CSCtg35833.

Affected products and versions

cisco telepresence_recording_server
cisco telepresence_recording_server_software

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References