CVE-2011-4659
Cisco TelePresence Software < TE 4.1.1 - Default Root Password Exposure via SSH
Title source: llmDescription
Cisco TelePresence Software before TE 4.1.1 on the Cisco IP Video Phone E20 has a default password for the root account after an upgrade to TE 4.1.0, which makes it easier for remote attackers to modify the configuration via an SSH session, aka Bug ID CSCtw69889, a different vulnerability than CVE-2011-2555.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120118-te
Scores
EPSS
0.0207
EPSS Percentile
79.4%
Details
CWE
CWE-264
Status
published
Products (11)
cisco/ip_video_phone_e20
cisco/telepresence_e20_software
te2.2
cisco/telepresence_e20_software
te2.2.1
cisco/telepresence_e20_software
te4.0.0
cisco/telepresence_e20_software
te4.1.0
cisco/telepresence_e20_software
te4.1.1
cisco/telepresence_e20_software
tenc4.0.0
cisco/telepresence_e20_software
tenc4.1.0
cisco/telepresence_e20_software
tenc4.1.1
cisco/telepresence_e20_software
tenc4.1.1-cucm
... and 1 more
Published
Jan 19, 2012
Tracked Since
Feb 18, 2026