CVE-2013-3405
Cisco TelePresence TC Software - Unauthenticated Authentication Bypass via Arbitrary Password
Title source: llmDescription
The web portal in TC software on Cisco TelePresence endpoints does not require an exact password match during a login attempt by a user who has not configured a password, which allows remote attackers to bypass authentication by sending an arbitrary password, aka Bug ID CSCud96071.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-3405
Scores
EPSS
0.0118
EPSS Percentile
64.3%
Details
CWE
CWE-264
Status
published
Products (1)
cisco/telepresence_tc_software
Published
Jul 10, 2013
Tracked Since
Feb 18, 2026