← Back

CVE-2022-20794

nvd nist
Published: May 4, 2022Modified: Jun 17, 2026

JSON object

Loading...
4.7
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
Exploitability: 2.8 / Impact: 1.4
Source: NVD

Description

Multiple vulnerabilities in the web engine of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow a remote attacker to cause a denial of service (DoS) condition, view sensitive data on an affected device, or redirect users to an attacker-controlled destination. For more information about these vulnerabilities, see the Details section of this advisory.

Affected (3)

2 products
Roomos
Configuration A
3 vulnerable
Vulnerable SoftwareAffected Versions
Before 2021-05
Cisco
Before 9.15.0.11
From 10.0.0.0 to 10.8.2.5

Timeline

No history available yet.