CVE Feed

    Dashboard / CVE / CVE-2013-3454

    CVE-2013-3454

    Cisco TelePresence System Software 1.10.1 and earlier on 500, 13X0, 1X00, 30X0, and 3X00 devices, and 6.0.3 and earlier on TX 9X00 devices, has a default password for the pwrecovery account, which makes it easier for remote attackers to modify the configuration or perform arbitrary actions via HTTPS requests, aka Bug ID CSCui43128.

    Published:Aug 8, 2013
    Last Modified:Apr 11, 2025
    EPS:Aug 8, 2013
    EPSS Score:0.00838
    CVSS Score:10

    Affected Products

    Vendor
    Cisco
    Product
    Telepresence System 1300
    Vendor
    Cisco
    Product
    Telepresence System 1300-65
    Vendor
    Cisco
    Product
    Telepresence System 3000
    Vendor
    Cisco
    Product
    Telepresence System 3010
    Vendor
    Cisco
    Product
    Telepresence System 3200
    Vendor
    Cisco
    Product
    Telepresence System 3210
    Vendor
    Cisco
    Product
    Telepresence System 500-32
    Vendor
    Cisco
    Product
    Telepresence System 500-37
    Vendor
    Cisco
    Product
    Telepresence System Software
    Vendor
    Cisco
    Product
    Telepresence System Tx9000
    Vendor
    Cisco
    Product
    Telepresence System Tx9200

    Exploits

    No exploit reference

    Common Weakness Enumeration

    No CWE recorded yet

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High