Description
The firewall subsystem in Cisco TelePresence TC Software before 4.2 does not properly implement rules that grant access to hosts, which allows remote attackers to obtain shell access with root privileges by leveraging connectivity to the management network, aka Bug ID CSCts37781.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20130619-tpc
Scores
EPSS
0.0100
EPSS Percentile
59.3%
Details
CWE
CWE-264
Status
published
Products (5)
cisco/telepresence_tc_software
4.0.0
cisco/telepresence_tc_software
4.0.1
cisco/telepresence_tc_software
4.0.4
cisco/telepresence_tc_software
4.1.1
cisco/telepresence_tc_software
< 4.1.2
Published
Jun 21, 2013
Tracked Since
Feb 18, 2026