QID 730789
Date Published: 2023-04-25
QID 730789: Cisco TelePresence Collaboration Endpoint Software Arbitrary File Overwrite Vulnerability (cisco-sa-roomos-file-write-rHKwegKf)
Vulnerability in the CLI of Cisco TelePresence CE and RoomOS could allow an authenticated, local attacker to overwrite arbitrary files on the local file system of an affected device.
Affected Version:
Cisco TelePresence CE Software Version 10 prior to version 11.1.2.4
Note: No support for RoomOS software.
QID Detection Logic (Unauthenticated):
The check matches Cisco TelePresence CE Software version retrieved via SNMP Banner.
A successful exploit could allow the attacker to overwrite arbitrary files on the affected device.
Solution
Customers are advised to refer to cisco-sa-roomos-file-write-rHKwegKf for more information.
Vendor References
- cisco-sa-roomos-file-write-rHKwegKf -
sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-file-write-rHKwegKf
CVEs related to QID 730789
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| cisco-sa-roomos-file-write-rHKwegKf |
|