CVE-2011-0375: OS Command Injection
The CGI implementation on Cisco TelePresence endpoint devices with software 1.2.x through 1.6.x allows remote authenticated users to execute arbitrary commands via a malformed request, related to "command injection vulnerabilities," aka Bug ID CSCth24671.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0375?
CVE-2011-0375 is considered a high severity vulnerability due to its potential for remote command execution.
How do I fix CVE-2011-0375?
To fix CVE-2011-0375, upgrade the Cisco TelePresence endpoint devices to a non-vulnerable software version.
Who is affected by CVE-2011-0375?
CVE-2011-0375 affects Cisco TelePresence endpoint devices running software versions 1.2.x through 1.6.x.
What type of vulnerabilities does CVE-2011-0375 represent?
CVE-2011-0375 represents a command injection vulnerability, allowing unauthorized command execution.
Are there temporary mitigations for CVE-2011-0375?
There are no recommended temporary mitigations for CVE-2011-0375 beyond upgrading the software to non-vulnerable versions.