Multiple vulnerabilities in the web engine of Cisco TelePresence Collaboration Endpoint (CE) Software and Cisco RoomOS Software could allow a remote attacker to cause a denial of service (DoS) condition, view sensitive data on an affected device, or redirect users to an attacker-controlled destination. For more information about these vulnerabilities, see the Details section of this advisory.
2022-05-04T17:15:08.740
2024-11-21T06:43:34.173
Modified
CVSSv3.1: 6.5 (MEDIUM)
AV:N/AC:M/Au:N/C:N/I:P/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | cisco | telepresence_collaboration_endpoint | < 9.15.0.11 | Yes |
Application | cisco | telepresence_collaboration_endpoint | < 10.8.2.5 | Yes |
Operating System | cisco | roomos | < 2021-05 | Yes |