CVE Feed

    Dashboard / CVE / CVE-2012-2486

    CVE-2012-2486

    The Cisco Discovery Protocol (CDP) implementation on Cisco TelePresence Multipoint Switch before 1.9.0, Cisco TelePresence Immersive Endpoint Devices before 1.9.1, Cisco TelePresence Manager before 1.9.0, and Cisco TelePresence Recording Server before 1.8.1 allows remote attackers to execute arbitrary code by leveraging certain adjacency and sending a malformed CDP packet, aka Bug IDs CSCtz40953, CSCtz40947, CSCtz40965, and CSCtz40953.

    Published:Jul 12, 2012
    Last Modified:Apr 11, 2025
    EPS:Jul 12, 2012
    EPSS Score:0.01028
    CVSS Score:8.3

    Affected Products

    Vendor
    Cisco
    Product
    Telepresence Manager
    Vendor
    Cisco
    Product
    Telepresence Multipoint Switch
    Vendor
    Cisco
    Product
    Telepresence Multipoint Switch Software
    Vendor
    Cisco
    Product
    Telepresence Recording Server
    Vendor
    Cisco
    Product
    Telepresence System 1300 65
    Vendor
    Cisco
    Product
    Telepresence System 3000
    Vendor
    Cisco
    Product
    Telepresence System 3010
    Vendor
    Cisco
    Product
    Telepresence System 3200
    Vendor
    Cisco
    Product
    Telepresence System 3210
    Vendor
    Cisco
    Product
    Telepresence System Software
    Vendor
    Cisco
    Product
    Telepresence System T3
    Vendor
    Cisco
    Product
    Telepresence System Tx1300 47
    Vendor
    Cisco
    Product
    Telepresence System Tx1310 65
    Vendor
    Cisco
    Product
    Telepresence System Tx9000
    Vendor
    Cisco
    Product
    Telepresence System Tx9200

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High