Vulnerability Details CVE-2015-0770
CRLF injection vulnerability in Cisco TelePresence TC 6.x before 6.3.4 and 7.x before 7.3.3 on Integrator C SX20 devices allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted URL, aka Bug ID CSCut79341.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 61.9%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2015-0770
-
cpe:2.3:a:cisco:telepresence_tc_software:6.3.0
-
cpe:2.3:a:cisco:telepresence_tc_software:6.3.1
-
cpe:2.3:a:cisco:telepresence_tc_software:6.3.2
-
cpe:2.3:a:cisco:telepresence_tc_software:6.3.3
-
cpe:2.3:a:cisco:telepresence_tc_software:7.1.0
-
cpe:2.3:a:cisco:telepresence_tc_software:7.1.1
-
cpe:2.3:a:cisco:telepresence_tc_software:7.1.2
-
cpe:2.3:a:cisco:telepresence_tc_software:7.1.3
-
cpe:2.3:a:cisco:telepresence_tc_software:7.1.4
-
cpe:2.3:a:cisco:telepresence_tc_software:7.2.0
-
cpe:2.3:a:cisco:telepresence_tc_software:7.2.1
-
cpe:2.3:a:cisco:telepresence_tc_software:7.3.0
-
cpe:2.3:a:cisco:telepresence_tc_software:7.3.1
-
cpe:2.3:a:cisco:telepresence_tc_software:7.3.2