CVE-2012-2486
Severity CVSS v4.0:
Pending analysis
Type:
CWE-94
Code Injection
Publication date:
12/07/2012
Last modified:
11/04/2025
Description
The Cisco Discovery Protocol (CDP) implementation on Cisco TelePresence Multipoint Switch before 1.9.0, Cisco TelePresence Immersive Endpoint Devices before 1.9.1, Cisco TelePresence Manager before 1.9.0, and Cisco TelePresence Recording Server before 1.8.1 allows remote attackers to execute arbitrary code by leveraging certain adjacency and sending a malformed CDP packet, aka Bug IDs CSCtz40953, CSCtz40947, CSCtz40965, and CSCtz40953.
Impact
Base Score 2.0
8.30
Severity 2.0
HIGH
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:*:*:*:*:*:*:*:* | 1.8.3\(9\) (including) | |
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.0.4.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.0.4.0\(21\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.1.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.1.0\(254\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.1.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.1.1\(30\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.1.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.1.2\(6\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.5.0:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.5.0\(222\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.5.1:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.5.1\(2\):*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.5.2:*:*:*:*:*:*:* | ||
| cpe:2.3:a:cisco:telepresence_multipoint_switch_software:1.5.2\(21\):*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-ctms
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-ctrs
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-cts
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-ctsman
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-ctms
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-ctrs
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-cts
- http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120711-ctsman



