First published: Wed Jan 11 2023(Updated: )
Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow an authenticated, local attacker to conduct server-side request forgery (SSRF) attacks through an affected device or to overwrite arbitrary files on an affected
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco TelePresence Collaboration Endpoint Software | ||
Cisco RoomOS Software |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of cisco-sa-roomos-dkjGFgRK is evaluated as high due to the potential for SSRF attacks and file overwriting.
To fix cisco-sa-roomos-dkjGFgRK, apply the latest security patches and updates provided by Cisco for affected software versions.
cisco-sa-roomos-dkjGFgRK can facilitate server-side request forgery (SSRF) attacks and unauthorized file overwriting on the affected devices.
Cisco TelePresence Collaboration Endpoint and Cisco RoomOS Software users are affected by the vulnerabilities described in cisco-sa-roomos-dkjGFgRK.
Yes, exploiting cisco-sa-roomos-dkjGFgRK requires an authenticated, local attacker to access the affected device.