CVE-2012-2486
8.3
Vector
AV:A/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 6.5 / Impact: 10.0
Source: NVD
Description
The Cisco Discovery Protocol (CDP) implementation on Cisco TelePresence Multipoint Switch before 1.9.0, Cisco TelePresence Immersive Endpoint Devices before 1.9.1, Cisco TelePresence Manager before 1.9.0, and Cisco TelePresence Recording Server before 1.8.1 allows remote attackers to execute arbitrary code by leveraging certain adjacency and sending a malformed CDP packet, aka Bug IDs CSCtz40953, CSCtz40947, CSCtz40965, and CSCtz40953.
Affected (114)
Products: Cisco: Telepresence Multipoint Switch Software, Telepresence Multipoint Switch, Telepresence System Software, Telepresence System 1300 65, Telepresence System 3000, Telepresence System 3010, Telepresence System 3200, Telepresence System 3210, Telepresence System T3, Telepresence System Tx1300 47, Telepresence System Tx1310 65, Telepresence System Tx9000, Telepresence System Tx9200, Telepresence Manager, Telepresence Recording Server
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.8.3\(9\) | |
| All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.9.0.1\(3\) | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions | |
| All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.8.1\(682\) |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Up to 1.8.0\(160\) |
References (8)
Source: psirt@cisco.com
Vendor Advisory
Source: psirt@cisco.com
Vendor Advisory
Source: psirt@cisco.com
Vendor Advisory
Source: psirt@cisco.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.