CVE-2012-3076: OS Command Injection
The administrative web interface on Cisco TelePresence Recording Server before 1.8.0 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Bug ID CSCth85804.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3076?
CVE-2012-3076 is classified with a medium severity level due to the potential for arbitrary command execution by remote authenticated users.
How do I fix CVE-2012-3076?
To mitigate CVE-2012-3076, upgrade the Cisco TelePresence Recording Server to version 1.8.0 or later.
What types of devices are affected by CVE-2012-3076?
CVE-2012-3076 affects several versions of Cisco TelePresence Recording Server including versions prior to 1.8.0.
Can CVE-2012-3076 be exploited by unauthenticated users?
No, CVE-2012-3076 requires remote authenticated users to exploit the vulnerability.
What are the implications of CVE-2012-3076?
Exploitation of CVE-2012-3076 could allow an authenticated attacker to execute arbitrary commands on the Cisco TelePresence Recording Server.