CVE-2014-2174

Severity CVSS v4.0:
Pending analysis
Type:
CWE-284 Improper Access Control
Publication date:
25/05/2015
Last modified:
12/04/2025

Description

Cisco TelePresence T, TelePresence TE, and TelePresence TC before 7.1 do not properly implement access control, which allows remote attackers to obtain root privileges by sending packets on the local network and allows physically proximate attackers to obtain root privileges via unspecified vectors, aka Bug ID CSCub67651.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:telepresence_tc_software:3.1.5:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:3.1_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:4.1.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:4.1.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:4.1.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:4.1_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:4.2.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:4.2.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:4.2.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:4.2.3:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:4.2.4:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:4.2_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:5.0.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:5.0.2-cucm:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:5.0_base:*:*:*:*:*:*:*