CVE-2011-0385
Cisco TelePresence Recording Server and Multipoint Switch - Arbitrary File Write and Remote Code Execution
Title source: llmDescription
The administrative web interface on Cisco TelePresence Recording Server devices with software 1.6.x and Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x allows remote attackers to create or overwrite arbitrary files, and possibly execute arbitrary code, via a crafted request, aka Bug IDs CSCth85786 and CSCth61065.
References (5)
Core 5
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e11d.shtml
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/65604
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1025114
Vendor Advisory vendor-advisory
x_refsource_cisco
http://www.cisco.com/en/US/products/products_security_advisory09186a0080b6e14e.shtml
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id?1025113
Scores
EPSS
0.0523
EPSS Percentile
91.6%
Details
Status
published
Products (21)
cisco/telepresence_multipoint_switch
cisco/telepresence_multipoint_switch_software
1.0.4.0
cisco/telepresence_multipoint_switch_software
1.1.0
cisco/telepresence_multipoint_switch_software
1.1.1
cisco/telepresence_multipoint_switch_software
1.1.2
cisco/telepresence_multipoint_switch_software
1.5.0
cisco/telepresence_multipoint_switch_software
1.5.1
cisco/telepresence_multipoint_switch_software
1.5.2
cisco/telepresence_multipoint_switch_software
1.5.3
cisco/telepresence_multipoint_switch_software
1.5.4
... and 11 more
Published
Feb 25, 2011
Tracked Since
Feb 18, 2026