Cisco TelePresence System Software 1.10.1 and earlier on 500, 13X0, 1X00, 30X0, and 3X00 devices, and 6.0.3 and earlier on TX 9X00 devices, has a default password for the pwrecovery account, which makes it easier for remote attackers to modify the configuration or perform arbitrary actions via HTTPS requests, aka Bug ID CSCui43128.

Project Subscriptions

Vendors Products
Telepresence System 1300 Subscribe
Telepresence System 1300-65 Subscribe
Telepresence System 3000 Subscribe
Telepresence System 3010 Subscribe
Telepresence System 3200 Subscribe
Telepresence System 3210 Subscribe
Telepresence System 500-32 Subscribe
Telepresence System 500-37 Subscribe
Telepresence System Software Subscribe
Telepresence System Tx9000 Subscribe
Telepresence System Tx9200 Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2013-3389 Cisco TelePresence System Software 1.10.1 and earlier on 500, 13X0, 1X00, 30X0, and 3X00 devices, and 6.0.3 and earlier on TX 9X00 devices, has a default password for the pwrecovery account, which makes it easier for remote attackers to modify the configuration or perform arbitrary actions via HTTPS requests, aka Bug ID CSCui43128.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2024-09-17T03:38:57.727Z

Reserved: 2013-05-06T00:00:00.000Z

Link: CVE-2013-3454

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2013-08-08T14:55:08.717

Modified: 2025-04-11T00:51:21.963

Link: CVE-2013-3454

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses