2013-08-08 16:55:08 2013-08-09 19:55:27

Cisco TelePresence System Software 1.10.1 and earlier on 500, 13X0, 1X00, 30X0, and 3X00 devices, and 6.0.3 and earlier on TX 9X00 devices, has a default password for the pwrecovery account, which makes it easier for remote attackers to modify the configuration or perform arbitrary actions via HTTPS requests, aka Bug ID CSCui43128.

Vector

NETWORK

Complexity

LOW

Authentication

NONE

Confidentiality

COMPLETE

Integrity

COMPLETE

Availability

COMPLETE
Cisco C4500M Cisco Telepresence system software 1.6.8 (not an official CPE) Cisco C24 M3 Cisco Telepresence system software 1.4.7 (not an official CPE) Cisco Telepresence system software 1.6.7 (not an official CPE) Cisco Telepresence system software 1.6.6 (not an official CPE) Cisco C240 M3 Cisco Telepresence system software 1.6.5 (not an official CPE) Cisco Business Edition 6000 Software 8.6(2a) Cisco C240 M4 Cisco C881W Integrated Services Router Cisco Cache Engine 570 3.0.0 Cisco Business Edition 6000 Software 8.6(1) Cisco Business Edition 6000 Software 8.5(1-2011o) Cisco Telepresence system software 1.3.2 (not an official CPE) Cisco Cache Engine 505 2.2.0.0 Cisco C420 M2 Cisco Cisco Cable Router Cisco C210 M2 Cisco C3160 Cisco C220 M3 Cisco C250 M2 Cisco C3640 Cisco C260 M2 Cisco Cache Engine 505 3.0 Cisco C1721 Cisco Business Edition 6000 Software 8.6(2) Cisco C200 M1 Cisco Telepresence system software 1.2.3 (not an official CPE) Cisco Telepresence system software 1.6.0 (not an official CPE) Cisco C200 M2 Cisco Telepresence system software 1.6.2 (not an official CPE) Cisco C460 M4 Cisco Telepresence system software 1.6.1 (not an official CPE) Cisco Telepresence system software 1.6.4 (not an official CPE) Cisco Telepresence system software 1.6.3 (not an official CPE) Cisco Cache Engine 570 2.2.0 Cisco C220 M4 Cisco Cache Engine 505 2.2.0 Cisco Cache Engine 550 3.0 Cisco Cache Engine 505 Cisco Business Edition 6000 Software 8.6(2a)su1 Cisco C250 M1 Cisco Cache Engine 505 3.0.0 Cisco Cache Engine 505 4.1.0 Cisco Telepresence system software 1.5.10 (not an official CPE) Cisco Cache Engine 505 4.0 Cisco Telepresence system software 1.5.13 (not an official CPE) Cisco Telepresence system software 1.5.12 (not an official CPE) Cisco Telepresence system software 1.5.11 (not an official CPE) Cisco C22 M3 Cisco Cache Engine 570 3.0 Cisco C460 M1 Cisco C460 M2 Cisco Business Edition 6000 Software 8.6(1a) Cisco C420 M3 Cisco Telepresence system software 1.5.1 (not an official CPE) Cisco Cache Engine 570 4.0.0 Cisco Telepresence system software 1.5.3 (not an official CPE) Cisco C5000RSM