CVE-2011-0373: OS Command Injection
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.5.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCtb31685.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0373?
CVE-2011-0373 is classified as a high severity vulnerability due to its potential for remote command execution.
How do I fix CVE-2011-0373?
To fix CVE-2011-0373, update the affected Cisco TelePresence endpoint devices to the latest software versions provided by Cisco.
Which Cisco TelePresence systems are affected by CVE-2011-0373?
Cisco TelePresence systems running software versions from 1.2.x through 1.5.x are affected by CVE-2011-0373.
Can CVE-2011-0373 be exploited remotely?
Yes, CVE-2011-0373 can be exploited remotely by authenticated users through specially crafted requests.
What type of vulnerability is CVE-2011-0373?
CVE-2011-0373 is identified as a command injection vulnerability, allowing unauthorized command execution.