Cisco TelePresence Video Communication Server (VCS) Software X8.5.1 Expressway Edition

CPE Details

Cisco TelePresence Video Communication Server (VCS) Software X8.5.1 Expressway Edition
x8.5.1
2020-08-25
13h42 +00:00
2020-08-25
13h42 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:cisco:telepresence_video_communication_server_software:x8.5.1:*:*:*:expressway:*:*:*

Informations

Vendor

cisco

Product

telepresence_video_communication_server_software

Version

x8.5.1

Software Edition

expressway

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2016-1444 2016-07-07 12h00 +00:00 The Mobile and Remote Access (MRA) component in Cisco TelePresence Video Communication Server (VCS) X8.1 through X8.7 and Expressway X8.1 through X8.6 mishandles certificates, which allows remote attackers to bypass authentication via an arbitrary trusted certificate, aka Bug ID CSCuz64601.
6.5
Medium
CVE-2016-1338 2016-03-12 01h00 +00:00 Cisco TelePresence Video Communication Server (VCS) X8.5.1 and X8.5.2 allows remote authenticated users to cause a denial of service (VoIP outage) via a crafted SIP message, aka Bug ID CSCuu43026.
6.5
Medium
CVE-2016-1316 2016-02-09 01h00 +00:00 Cisco TelePresence Video Communication Server (VCS) X8.1 through X8.7, as used in conjunction with Jabber Guest, allows remote attackers to obtain sensitive call-statistics information via a direct request to an unspecified URL, aka Bug ID CSCux73362.
5.3
Medium
CVE-2015-6376 2015-11-21 10h00 +00:00 Cross-site request forgery (CSRF) vulnerability in Cisco TelePresence Video Communication Server (VCS) X8.5.1 allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuv72412.
6.8
CVE-2015-6318 2015-10-12 08h00 +00:00 Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.1 and X8.5.2 allows local users to write to arbitrary files via an unspecified symlink attack, aka Bug ID CSCuv11969.
6.9
CVE-2015-4319 2015-08-20 08h00 +00:00 The password-change feature in the administrative web interface in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.1 improperly performs authorization, which allows remote authenticated users to reset arbitrary active-user passwords via unspecified vectors, aka Bug ID CSCuv12338.
5.5
CVE-2015-4314 2015-08-19 22h00 +00:00 The System Snapshot feature in Cisco TelePresence Video Communication Server (VCS) Expressway X8.5.1 allows remote authenticated users to obtain sensitive password-hash information by reading the snapshot file, aka Bug ID CSCuv40422.
4