CVE-2011-0390: High severity cisco telepresence multipoint switch software vulnerability
The XML-RPC implementation on Cisco TelePresence Multipoint Switch (CTMS) devices with software 1.0.x, 1.1.x, 1.5.x, 1.6.x, and 1.7.0 allows remote attackers to cause a denial of service (process crash) via a crafted request, aka Bug ID CSCtj44534.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0390?
CVE-2011-0390 has a high severity rating due to its potential to cause a denial of service.
How do I fix CVE-2011-0390?
To fix CVE-2011-0390, upgrade to an unaffected version of Cisco TelePresence Multipoint Switch software.
What devices are affected by CVE-2011-0390?
CVE-2011-0390 affects Cisco TelePresence Multipoint Switch devices running software versions 1.0.x, 1.1.x, 1.5.x, 1.6.x, and 1.7.0.
What type of attack does CVE-2011-0390 vulnerability allow?
CVE-2011-0390 allows remote attackers to cause a denial of service through a crafted XML-RPC request.
Is there a workaround for CVE-2011-0390?
No specific workaround is available for CVE-2011-0390; the recommended action is to update to a secure version.