ID

VAR-E-201207-0299


CVE

cve_id:CVE-2012-3076

Trust: 0.3

sources: BID: 54385

TITLE

Cisco TelePresence Recording Server Web Interface Remote Command Injection Vulnerability

Trust: 0.3

sources: BID: 54385

DESCRIPTION

Cisco TelePresence Recording Server is prone to a remote command-injection vulnerability.
Successful exploits will result in the execution of arbitrary attacker-supplied commands in the context of the root user. This may facilitate a complete compromise.
This issue is being tracked by Cisco bug ID CSCti21830.

Trust: 0.3

sources: BID: 54385

AFFECTED PRODUCTS

vendor:ciscomodel:telepresence recording serverscope:eqversion:1.7.2

Trust: 0.3

vendor:ciscomodel:telepresence recording serverscope:eqversion:1.6.2

Trust: 0.3

vendor:ciscomodel:telepresence recording serverscope:eqversion:1.6.1

Trust: 0.3

vendor:ciscomodel:telepresence recording serverscope:eqversion:1.6

Trust: 0.3

vendor:ciscomodel:telepresence recording serverscope:eqversion:1.7.2.1

Trust: 0.3

vendor:ciscomodel:telepresence recording serverscope:eqversion:1.7.1

Trust: 0.3

sources: BID: 54385

EXPLOIT

The vendor reports that exploits for this issue are available.

Trust: 0.3

sources: BID: 54385

PRICE

Free

Trust: 0.3

sources: BID: 54385

TYPE

Design Error

Trust: 0.3

sources: BID: 54385

CREDITS

Cisco

Trust: 0.3

sources: BID: 54385

EXTERNAL IDS

db:NVDid:CVE-2012-3076

Trust: 0.3

db:BIDid:54385

Trust: 0.3

sources: BID: 54385

REFERENCES

url:http://www.cisco.com

Trust: 0.3

sources: BID: 54385

SOURCES

db:BIDid:54385

LAST UPDATE DATE

2022-07-27T09:45:22.222000+00:00


SOURCES UPDATE DATE

db:BIDid:54385date:2012-07-11T00:00:00

SOURCES RELEASE DATE

db:BIDid:54385date:2012-07-11T00:00:00