CVE-2013-3454
Cisco TelePresence System Software 1.10.1 and earlier on 500, 13X0, 1X00, 30X0, and 3X00 devices, and 6.0.3 and earlier on TX 9X00 devices, has a default password for the pwrecovery account, which makes it easier for remote attackers to modify the configuration or perform arbitrary actions via HTTPS requests, aka Bug ID CSCui43128.
Published:Aug 8, 2013
Last Modified:Apr 11, 2025
EPS:Aug 8, 2013
EPSS Score:0.00838
CVSS Score:10
Affected Products
Vendor
Product
Action
Vendor
Cisco
Product
Telepresence System 1300
Cisco
Telepresence System 1300
Vendor
Cisco
Product
Telepresence System 1300-65
Cisco
Telepresence System 1300-65
Vendor
Cisco
Product
Telepresence System 3000
Cisco
Telepresence System 3000
Vendor
Cisco
Product
Telepresence System 3010
Cisco
Telepresence System 3010
Vendor
Cisco
Product
Telepresence System 3200
Cisco
Telepresence System 3200
Vendor
Cisco
Product
Telepresence System 3210
Cisco
Telepresence System 3210
Vendor
Cisco
Product
Telepresence System 500-32
Cisco
Telepresence System 500-32
Vendor
Cisco
Product
Telepresence System 500-37
Cisco
Telepresence System 500-37
Vendor
Cisco
Product
Telepresence System Software
Cisco
Telepresence System Software
Vendor
Cisco
Product
Telepresence System Tx9000
Cisco
Telepresence System Tx9000
Vendor
Cisco
Product
Telepresence System Tx9200
Cisco
Telepresence System Tx9200
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
