CVE-2011-0385: Critical severity cisco telepresence recording server vulnerability
The administrative web interface on Cisco TelePresence Recording Server devices with software 1.6.x and Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, and 1.6.x allows remote attackers to create or overwrite arbitrary files, and possibly execute arbitrary code, via a crafted request, aka Bug IDs CSCth85786 and CSCth61065.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0385?
CVE-2011-0385 is classified as a high severity vulnerability due to the potential for remote code execution.
How do I fix CVE-2011-0385?
To fix CVE-2011-0385, update your Cisco TelePresence Recording Server or Multipoint Switch software to the latest patched version provided by Cisco.
What types of devices are affected by CVE-2011-0385?
CVE-2011-0385 affects Cisco TelePresence Recording Servers and Cisco TelePresence Multipoint Switches running specified vulnerable versions.
Can CVE-2011-0385 allow unauthorized access?
Yes, CVE-2011-0385 can allow unauthorized attackers to create or overwrite arbitrary files potentially leading to code execution.
Is there a workaround for CVE-2011-0385?
There is no specific workaround for CVE-2011-0385 other than applying the latest software updates or patches released by Cisco.