First published: Mon Aug 08 2016(Updated: )
The administrative web interface in Cisco TelePresence Video Communication Server Expressway X8.5.2 allows remote authenticated users to execute arbitrary commands via crafted fields, aka Bug ID CSCuv12531.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Tandberg Video Communication Server | =x8.5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1468 is classified as a high-severity vulnerability that allows remote authenticated users to execute arbitrary commands.
To remediate CVE-2016-1468, upgrade the Cisco TelePresence Video Communication Server Expressway to a version that is not affected by this vulnerability.
CVE-2016-1468 impacts users of Cisco TelePresence Video Communication Server Expressway version X8.5.2.
CVE-2016-1468 is a command injection vulnerability in the administrative web interface.
Yes, CVE-2016-1468 can be exploited by remote authenticated users to execute arbitrary commands.