HIGH · 9.0

CVE-2014-2169

Cisco TelePresence TC Software 4.x through 6.x before 6.2.0 and TE Software 4.x and 6.0 allow remote authenticated users to execute arbitrary commands by using the commands as arguments to internal sy...

Vulnerability Description

Cisco TelePresence TC Software 4.x through 6.x before 6.2.0 and TE Software 4.x and 6.0 allow remote authenticated users to execute arbitrary commands by using the commands as arguments to internal system scripts, aka Bug ID CSCue60211.

CVSS Score

9.0

HIGH

AV:N/AC:L/Au:S/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
CiscoTelepresence Tc Software4.0.0
CiscoTelepresence Te Software4.1.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2014-2169?

CVE-2014-2169 is a vulnerability with a CVSS score of 9.0 (HIGH). Cisco TelePresence TC Software 4.x through 6.x before 6.2.0 and TE Software 4.x and 6.0 allow remote authenticated users to execute arbitrary commands by using the commands as arguments to internal sy...

How severe is CVE-2014-2169?

CVE-2014-2169 has been rated HIGH with a CVSS base score of 9.0/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2014-2169?

Check the references section above for vendor advisories and patch information. Affected products include: Cisco Telepresence Tc Software, Cisco Telepresence Te Software.