Vulnerability Details CVE-2015-0660
Cisco Virtual TelePresence Server Software does not properly restrict use of the serial port, which allows local users to execute arbitrary OS commands as root by leveraging vSphere controller administrative privileges, aka Bug ID CSCus61123.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 16.2%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2015-0660
-
cpe:2.3:a:cisco:telepresence_server_software:2.1(1.33)
-
cpe:2.3:a:cisco:telepresence_server_software:2.1(1.37)
-
cpe:2.3:a:cisco:telepresence_server_software:2.2(1.43)
-
cpe:2.3:a:cisco:telepresence_server_software:2.2(1.48)
-
cpe:2.3:a:cisco:telepresence_server_software:2.2(1.54)
-
cpe:2.3:a:cisco:telepresence_server_software:2.3(1.55)
-
cpe:2.3:a:cisco:telepresence_server_software:2.3(1.57)
-
cpe:2.3:a:cisco:telepresence_server_software:3.0(2.24)
-
cpe:2.3:a:cisco:telepresence_server_software:3.0(2.46)
-
cpe:2.3:a:cisco:telepresence_server_software:3.0(2.48)
-
cpe:2.3:a:cisco:telepresence_server_software:3.0(2.49)
-
cpe:2.3:a:cisco:telepresence_server_software:3.1(1.80)
-
cpe:2.3:a:cisco:telepresence_server_software:3.1(1.82)
-
cpe:2.3:a:cisco:telepresence_server_software:3.1(1.95)
-
cpe:2.3:a:cisco:telepresence_server_software:3.1(1.96)
-
cpe:2.3:a:cisco:telepresence_server_software:3.1(1.97)
-
cpe:2.3:a:cisco:telepresence_server_software:3.1(1.98)
-
cpe:2.3:a:cisco:telepresence_server_software:4.0(1.57)
-
cpe:2.3:a:cisco:telepresence_server_software:4.0(2.8)
-
cpe:2.3:a:cisco:telepresence_server_software:4.1(1.40)
-
cpe:2.3:a:cisco:telepresence_server_software:4.1(2.29)
-
cpe:2.3:a:cisco:telepresence_server_software:4.1(2.33)
-
cpe:2.3:a:cisco:telepresence_server_software:4.2(4.17)
-
cpe:2.3:a:cisco:telepresence_server_software:4.2(4.18)
-
cpe:2.3:a:cisco:telepresence_server_software:4.2(4.19)