CVE-2011-0382: OS Command Injection
The CGI subsystem on Cisco TelePresence Recording Server devices with software 1.6.x before 1.6.2 allows remote attackers to execute arbitrary commands via a request to TCP port 443, related to a "command injection vulnerability," aka Bug ID CSCtf97221.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0382?
CVE-2011-0382 is rated as a critical vulnerability due to its potential for remote command execution.
How do I fix CVE-2011-0382?
To fix CVE-2011-0382, upgrade the Cisco TelePresence Recording Server software to version 1.6.2 or later.
What devices are impacted by CVE-2011-0382?
CVE-2011-0382 affects Cisco TelePresence Recording Server devices running software version 1.6.1 and earlier.
Can CVE-2011-0382 be exploited remotely?
Yes, CVE-2011-0382 can be exploited remotely through a crafted request to TCP port 443.
What type of vulnerability is CVE-2011-0382?
CVE-2011-0382 is a command injection vulnerability that allows attackers to execute arbitrary commands.