VYPR
Critical severity9.8NVD Advisory· Published May 5, 2016· Updated May 6, 2026

CVE-2016-1387

CVE-2016-1387

Description

The XML API in TelePresence Codec (TC) 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.3.2, 7.3.3, 7.3.4, and 7.3.5 and Collaboration Endpoint (CE) 8.0.0, 8.0.1, and 8.1.0 in Cisco TelePresence Software mishandles authentication, which allows remote attackers to execute control commands or make configuration changes via an API request, aka Bug ID CSCuz26935.

Affected products

6
  • cpe:2.3:a:cisco:telepresence_tc_software:7.2.0:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:a:cisco:telepresence_tc_software:7.2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:telepresence_tc_software:7.2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:telepresence_tc_software:7.3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:telepresence_tc_software:7.3.1:*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:telepresence_tc_software:7.3.2:*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:telepresence_tc_software:7.3.3:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.