CVE-2015-0697

Cisco TelePresence TC Software < 6.3-26 and 7.x < 7.3.0 - Open Redirect via Login Page

Title source: llm
STIX 2.1

Description

Open redirect vulnerability in the login page in Cisco TC Software before 6.3-26 and 7.x before 7.3.0 on Cisco TelePresence Collaboration Desk and Room Endpoints devices allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors, aka Bug ID CSCuq94980.

References (2)

Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1032136
Vendor Advisory vendor-advisory x_refsource_cisco
http://tools.cisco.com/security/center/viewAlert.x?alertId=38350

Scores

EPSS 0.0187
EPSS Percentile 76.6%

Details

CWE
CWE-601
Status published
Products (15)
cisco/telepresence_tc_software 6.0.0
cisco/telepresence_tc_software 6.0.0-cucm
cisco/telepresence_tc_software 6.0.1
cisco/telepresence_tc_software 6.0.1-cucm
cisco/telepresence_tc_software 6.0.2
cisco/telepresence_tc_software 6.0_base
cisco/telepresence_tc_software 6.1.0
cisco/telepresence_tc_software 6.1.0-cucm
cisco/telepresence_tc_software 6.1.1
cisco/telepresence_tc_software 6.1.1-cucm
... and 5 more
Published Apr 15, 2015
Tracked Since Feb 18, 2026