Networking-Forums.com

Professional Discussions => Vendor Advisories => Topic started by: Netwörkheäd on April 20, 2023, 12:10:28 PM

Title: Cisco Security Advisory - Cisco TelePresence Collaboration Endpoint and RoomOS Arbitrary File Write Vulnerabilities
Post by: Netwörkheäd on April 20, 2023, 12:10:28 PM
Cisco TelePresence Collaboration Endpoint and RoomOS Arbitrary File Write Vulnerabilities

Multiple vulnerabilities in Cisco TelePresence Collaboration Endpoint (CE) and Cisco RoomOS could allow an attacker to elevate privileges, overwrite arbitrary files, or view sensitive data on an affected device. 


For more information about these vulnerabilities, see the Details section of this advisory.


Cisco has released software updates that address these vulnerabilities. There are no workarounds that address these vulnerabilities.


This advisory is available at the following link:
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-file-write-rHKwegKf


     
         
Security Impact Rating:  Medium
   
   
       
CVE: CVE-2023-20004,CVE-2023-20090,CVE-2023-20091,CVE-2023-20092,CVE-2023-20093,CVE-2023-20094
Source: Cisco TelePresence Collaboration Endpoint and RoomOS Arbitrary File Write Vulnerabilities (https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-roomos-file-write-rHKwegKf?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20TelePresence%20Collaboration%20Endpoint%20and%20RoomOS%20Arbitrary%20File%20Write%20Vulnerabilities&vs_k=1)