Command Injection Vulnerability in Cisco TelePresence Endpoint Devices
CVE-2011-0374
Currently unrated
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 25 February 2011
What is CVE-2011-0374?
The CGI implementation on Cisco TelePresence endpoint devices running software versions 1.2.x to 1.5.x is susceptible to command injection. Remote authenticated users may exploit this vulnerability by sending specially crafted requests, enabling them to execute arbitrary commands. This issue poses a significant threat to system integrity and could lead to unauthorized access or control of the affected devices.