Back

MEDIUM

Cisco TelePresence Collaboration Endpoint Software Privilege Escalation Vulnerability

Published Oct 16, 2019

Description

A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to execute code with root privileges. The vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by authenticating as the remote support user and sending malicious traffic to a listener who is internal to the device. A successful exploit could allow the attacker to execute commands with root privileges.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner cisco
Published Oct 16, 2019
Updated Nov 20, 2024
Reserved Aug 20, 2019

CISA Vulnrichment

Updated Nov 20, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner cisco
Published Oct 16, 2019
Updated Nov 20, 2024

GitHub

No data