8.3

CVE-2014-2174

Cisco TelePresence T, TelePresence TE, and TelePresence TC before 7.1 do not properly implement access control, which allows remote attackers to obtain root privileges by sending packets on the local network and allows physically proximate attackers to obtain root privileges via unspecified vectors, aka Bug ID CSCub67651.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
CiscoTelepresence Tc Software Version3.1.5
CiscoTelepresence Tc Software Version3.1_base
CiscoTelepresence Tc Software Version4.1.0
CiscoTelepresence Tc Software Version4.1.1
CiscoTelepresence Tc Software Version4.1.2
CiscoTelepresence Tc Software Version4.1_base
CiscoTelepresence Tc Software Version4.2.0
CiscoTelepresence Tc Software Version4.2.1
CiscoTelepresence Tc Software Version4.2.2
CiscoTelepresence Tc Software Version4.2.3
CiscoTelepresence Tc Software Version4.2.4
CiscoTelepresence Tc Software Version4.2_base
CiscoTelepresence Tc Software Version5.0.2
CiscoTelepresence Tc Software Version5.0.2-cucm
CiscoTelepresence Tc Software Version5.0_base
CiscoTelepresence Tc Software Version5.1.3
CiscoTelepresence Tc Software Version5.1.3-cucm
CiscoTelepresence Tc Software Version5.1.4
CiscoTelepresence Tc Software Version5.1.4-cucm
CiscoTelepresence Tc Software Version5.1.5
CiscoTelepresence Tc Software Version5.1.5-cucm
CiscoTelepresence Tc Software Version5.1.6
CiscoTelepresence Tc Software Version5.1.6-cucm
CiscoTelepresence Tc Software Version5.1.7
CiscoTelepresence Tc Software Version5.1.7-cucm
CiscoTelepresence Tc Software Version5.1_base
CiscoTelepresence Tc Software Version6.0.0
CiscoTelepresence Tc Software Version6.0.0-cucm
CiscoTelepresence Tc Software Version6.0.1
CiscoTelepresence Tc Software Version6.0.1-cucm
CiscoTelepresence Tc Software Version6.0.2
CiscoTelepresence Tc Software Version6.0_base
CiscoTelepresence Tc Software Version6.1.0
CiscoTelepresence Tc Software Version6.1.0-cucm
CiscoTelepresence Tc Software Version6.1.1
CiscoTelepresence Tc Software Version6.1.1-cucm
CiscoTelepresence Tc Software Version6.1.2
CiscoTelepresence Tc Software Version6.1.2-cucm
CiscoTelepresence Tc Software Version6.1_base
CiscoTelepresence Tc Software Version6.3.0
CiscoTelepresence Te Software Version6.0.0
CiscoTelepresence Te Software Version6.0.1
CiscoTelepresence Te Software Version6.0.2
CiscoTelepresence Te Software Version6.0_base
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.21% 0.44
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.3 6.5 10
AV:A/AC:L/Au:N/C:C/I:C/A:C
CWE-284 Improper Access Control

The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor.