VYPR

Telepresence Ce Software

by Cisco Systems, Inc.

CVEs (9)

  • CVE-2019-1878HigJun 20, 2019
    risk 0.49cvss 7.5epss 0.01

    A vulnerability in the Cisco Discovery Protocol (CDP) implementation for the Cisco TelePresence Codec (TC) and Collaboration Endpoint (CE) Software could allow an unauthenticated, adjacent attacker to inject arbitrary shell commands that are executed by the device. The…

  • CVE-2017-6648HigJun 8, 2017
    risk 0.49cvss 7.5epss 0.04

    A vulnerability in the Session Initiation Protocol (SIP) of the Cisco TelePresence Codec (TC) and Collaboration Endpoint (CE) Software could allow an unauthenticated, remote attacker to cause a TelePresence endpoint to reload unexpectedly, resulting in a denial of service (DoS)…

  • CVE-2017-3825HigMay 16, 2017
    risk 0.49cvss 7.5epss 0.03

    A vulnerability in the ICMP ingress packet processing of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an unauthenticated, remote attacker to cause the TelePresence endpoint to reload unexpectedly, resulting in a denial of service (DoS) condition. The…

  • CVE-2020-3143HigSep 23, 2020
    risk 0.47cvss 7.2epss 0.08

    A vulnerability in the video endpoint API (xAPI) of Cisco TelePresence Collaboration Endpoint (CE) Software, Cisco TelePresence Codec (TC) Software, and Cisco RoomOS Software could allow an authenticated, remote attacker to conduct directory traversal attacks on an affected…

  • CVE-2020-3336HigJun 18, 2020
    risk 0.47cvss 7.2epss 0.02

    A vulnerability in the software upgrade process of Cisco TelePresence Collaboration Endpoint Software and Cisco RoomOS Software could allow an authenticated, remote attacker to modify the filesystem to cause a denial of service (DoS) or gain privileged access to the root…

  • CVE-2022-20793MedNov 15, 2024
    risk 0.44cvss 6.8epss 0.00

    A vulnerability in pairing process of Cisco TelePresence CE Software and RoomOS Software for Cisco Touch 10 Devices could allow an unauthenticated, remote attacker to impersonate a legitimate device and pair with an affected device. This vulnerability is due to…

  • CVE-2022-20931MedNov 15, 2024
    risk 0.42cvss 6.5epss 0.00

    A vulnerability in the version control of Cisco TelePresence CE Software for Cisco Touch 10 Devices could allow an unauthenticated, adjacent attacker to install an older version of the software on an affected device. This vulnerability is due to insufficient version…

  • CVE-2020-26068MedNov 18, 2020
    risk 0.36cvss 5.5epss 0.01

    A vulnerability in the xAPI service of Cisco Telepresence CE Software and Cisco RoomOS Software could allow an authenticated, remote attacker to generate an access token for an affected device. The vulnerability is due to insufficient access authorization. An attacker could…

  • CVE-2019-12622MedAug 21, 2019
    risk 0.36cvss 5.5epss 0.00

    A vulnerability in Cisco RoomOS Software could allow an authenticated, local attacker to write files to the underlying filesystem with root privileges. The vulnerability is due to insufficient permission restrictions on a specific process. An attacker could exploit this…