Vulnerability Details CVE-2022-20793
A vulnerability in pairing process of Cisco TelePresence CE Software and RoomOS Software for Cisco Touch 10 Devices could allow an unauthenticated, remote attacker to impersonate a legitimate device and pair with an affected device.
This vulnerability is due to insufficient identity verification. An attacker could exploit this vulnerability by impersonating a legitimate device and responding to the pairing broadcast from an affected device. A successful exploit could allow the attacker to access the affected device while impersonating a legitimate device.There are no workarounds that address this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.002
EPSS Ranking 38.4%
CVSS Severity
CVSS v3 Score 6.8
Products affected by CVE-2022-20793
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.0.1
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.1.1
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.1.2
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.1.3
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.1.4
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.1.5
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.1.6
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.10.1
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.10.2
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.10.3
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.12.3
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.12.4
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.12.5
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.13.0
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.13.1
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.13.2
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.13.3
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.14.3
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.14.4
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.14.5
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.14.6
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.14.7
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.0.10
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.0.11
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.0.13
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.0.19
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.10.8
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.13.0
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.3.17
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.3.18
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.3.19
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.3.22
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.3.25
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.3.26
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.15.8.12
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.2.1
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.2.2
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.2.3
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.2.4
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.9.3
-
cpe:2.3:a:cisco:telepresence_collaboration_endpoint:9.9.4
-