Cisco TelePresence Recording Server Default Root Credentials Authentication Bypass Vulnerability
BID:48932
Info
Cisco TelePresence Recording Server Default Root Credentials Authentication Bypass Vulnerability
| Bugtraq ID: | 48932 |
| Class: | Design Error |
| CVE: |
CVE-2011-2555 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 29 2011 12:00AM |
| Updated: | Jul 29 2011 12:00AM |
| Credit: | Cisco |
| Vulnerable: |
Cisco Telepresence Recording Server 1.7.2 |
| Not Vulnerable: |
Cisco Telepresence Recording Server 1.7.2.1 |
Discussion
Cisco TelePresence Recording Server Default Root Credentials Authentication Bypass Vulnerability
Cisco TelePresence Recording Server is prone to a remote authentication-bypass vulnerability.
An attacker can exploit this issue to gain unauthorized administrative access to the affected device. Successful exploits will result in the complete compromise of the affected device.
This issue is being tracked by Cisco bug ID CSCtr76182.
Cisco TelePresence Recording Server is prone to a remote authentication-bypass vulnerability.
An attacker can exploit this issue to gain unauthorized administrative access to the affected device. Successful exploits will result in the complete compromise of the affected device.
This issue is being tracked by Cisco bug ID CSCtr76182.
Exploit / POC
Cisco TelePresence Recording Server Default Root Credentials Authentication Bypass Vulnerability
Attackers can use readily available tools to exploit this issue.
Attackers can use readily available tools to exploit this issue.
Solution / Fix
Cisco TelePresence Recording Server Default Root Credentials Authentication Bypass Vulnerability
Solution:
The vendor has released an advisory along with fixes. Please see the referenced advisory for details.
Solution:
The vendor has released an advisory along with fixes. Please see the referenced advisory for details.
References
Cisco TelePresence Recording Server Default Root Credentials Authentication Bypass Vulnerability
References:
References: