SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2011-0354

The default configuration of Cisco Tandberg C Series Endpoints, and Tandberg E and EX Personal Video units, with software before TC4.0.0 has a blank password for the root account, which makes it easier for remote attackers to obtain access via an…

HIGH 10.0EPSS 14.0%

Does this matter?

EPSS puts the probability of exploitation in the next 30 days at 14.0%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.

Description

The default configuration of Cisco Tandberg C Series Endpoints, and Tandberg E and EX Personal Video units, with software before TC4.0.0 has a blank password for the root account, which makes it easier for remote attackers to obtain access via an unspecified login method.

CVSS 2.0
10.0 HIGHAV:N/AC:L/Au:N/C:C/I:C/A:C
EPSS
13.99% probability · 96th percentile
CISA KEV
Not listed
Weakness
CWE-255
Affected
cisco/tandberg endpoint · cisco/tandberg personal video unit software · cisco/tandberg personal video unit
Source
psirt@cisco.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.