43158Third-party advisory
http://secunia.com/advisories/43158 CVE-2011-0354
Tandberg E & EX & C Series Endpoints - Default Root Account Credentials
Record summary
CVE-2011-0354 has a selected CVSS score of 10.0; EIP currently links 1 catalogued exploit.
Description
The default configuration of Cisco Tandberg C Series Endpoints, and Tandberg E and EX Personal Video units, with software before TC4.0.0 has a blank password for the root account, which makes it easier for remote attackers to obtain access via an unspecified login method.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBTandberg E & EX & C Series Endpoints - Default Root Account CredentialsExploitDB exploitby Cisco SecurityNot analyzed1 file
References
98060Third-party advisory
http://securityreason.com/securityalert/8060 1025017vdb entry
http://securitytracker.com/id?1025017 tools.cisco.comConfirmation
http://tools.cisco.com/security/center/viewAlert.x?alertId=22314 20110202 Default Credentials for Root Account on Tandberg E, EX and C Series EndpointsVendor advisory
http://www.cisco.com/en/US/products/ps11422/products_security_advisory09186a0080b69541.shtml 16100exploit
http://www.exploit-db.com/exploits/16100 VU#436854Third-party advisory
http://www.kb.cert.org/vuls/id/436854 46107vdb entry
http://www.securityfocus.com/bid/46107 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2011-0354