Unrated severityNVD Advisory· Published Jan 23, 2014· Updated Apr 29, 2026
CVE-2014-0675
CVE-2014-0675
Description
The Expressway component in Cisco TelePresence Video Communication Server (VCS) uses the same default X.509 certificate across different customers' installations, which makes it easier for remote attackers to conduct man-in-the-middle attacks against SSL sessions by leveraging the certificate's trust relationship, aka Bug ID CSCue07471.
Affected products
1- cpe:2.3:h:cisco:telepresence_video_communication_server:-:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-0675nvdVendor Advisory
- tools.cisco.com/security/center/viewAlert.xnvdVendor Advisory
- www.securityfocus.com/bid/65101nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1029682nvdThird Party AdvisoryVDB Entry
- osvdb.org/102377nvd
- secunia.com/advisories/56621nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/90650nvd
News mentions
0No linked articles in our index yet.