CVE-2014-2169: Input Validation
Cisco TelePresence TC Software 4.x through 6.x before 6.2.0 and TE Software 4.x and 6.0 allow remote authenticated users to execute arbitrary commands by using the commands as arguments to internal system scripts, aka Bug ID CSCue60211.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-2169?
CVE-2014-2169 is rated as High severity due to its potential to allow remote authenticated users to execute arbitrary commands.
How do I fix CVE-2014-2169?
To fix CVE-2014-2169, update your Cisco TelePresence software to version 6.2.0 or later.
Which Cisco products are affected by CVE-2014-2169?
CVE-2014-2169 affects Cisco TelePresence TC Software versions 4.x to 6.x prior to 6.2.0 and TE Software version 4.x and 6.0.
Can CVE-2014-2169 be exploited remotely?
Yes, CVE-2014-2169 can be exploited remotely by authenticated users with the ability to execute arbitrary commands.
What type of vulnerability is CVE-2014-2169?
CVE-2014-2169 is a command injection vulnerability allowing attackers to run arbitrary commands on the affected system.