CVE-2013-3405

Cisco TelePresence TC Software - Unauthenticated Authentication Bypass via Arbitrary Password

Title source: llm
STIX 2.1

Description

The web portal in TC software on Cisco TelePresence endpoints does not require an exact password match during a login attempt by a user who has not configured a password, which allows remote attackers to bypass authentication by sending an arbitrary password, aka Bug ID CSCud96071.

References (1)

Core 1
Core References

Scores

EPSS 0.0118
EPSS Percentile 64.3%

Details

CWE
CWE-264
Status published
Products (1)
cisco/telepresence_tc_software
Published Jul 10, 2013
Tracked Since Feb 18, 2026