Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.105351
Categoría:CISCO
Título:Cisco TelePresence Integrator C Series Authentication Bypass Vulnerability (CSCuv00604)
Resumen:Cisco TelePresence Integrator C Series devices running TC; Software are prone to an authentication-bypass vulnerability because it fails to sufficiently; sanitize the user-supplied input.
Descripción:Summary:
Cisco TelePresence Integrator C Series devices running TC
Software are prone to an authentication-bypass vulnerability because it fails to sufficiently
sanitize the user-supplied input.

Vulnerability Insight:
A vulnerability in Cisco TelePresence Integrator C Series could
allow an unauthenticated, remote attacker to bypass authentication.

The vulnerability is due to insufficient validation of user-supplied values. An attacker could
exploit this vulnerability by sending multiple request parameters to an affected device.

This issue is tracked by Cisco Bug ID CSCuv00604

Vulnerability Impact:
An attacker can exploit this issue to bypass the authentication
mechanism on an affected device. This may lead to further attacks.

Affected Software/OS:
Cisco TelePresence Integrator C Series devices running TC
Software prior to versions 7.3.4.

Solution:
Update to version 7.3.4 or later.

CVSS Score:
6.4

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:N

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2015-4271
Cisco Security Advisory: 20150714 Cisco TelePresence Integrator C Series Multiple Request Parameter Vulnerability
http://tools.cisco.com/security/center/viewAlert.x?alertId=39880
http://www.securitytracker.com/id/1032931
CopyrightCopyright (C) 2015 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.