CVE-2011-4659

Cisco TelePresence Software < TE 4.1.1 - Default Root Password Exposure via SSH

Title source: llm
STIX 2.1

Description

Cisco TelePresence Software before TE 4.1.1 on the Cisco IP Video Phone E20 has a default password for the root account after an upgrade to TE 4.1.0, which makes it easier for remote attackers to modify the configuration via an SSH session, aka Bug ID CSCtw69889, a different vulnerability than CVE-2011-2555.

References (1)

Core 1
Core References

Scores

EPSS 0.0207
EPSS Percentile 79.4%

Details

CWE
CWE-264
Status published
Products (11)
cisco/ip_video_phone_e20
cisco/telepresence_e20_software te2.2
cisco/telepresence_e20_software te2.2.1
cisco/telepresence_e20_software te4.0.0
cisco/telepresence_e20_software te4.1.0
cisco/telepresence_e20_software te4.1.1
cisco/telepresence_e20_software tenc4.0.0
cisco/telepresence_e20_software tenc4.1.0
cisco/telepresence_e20_software tenc4.1.1
cisco/telepresence_e20_software tenc4.1.1-cucm
... and 1 more
Published Jan 19, 2012
Tracked Since Feb 18, 2026