← All CVEs

CVE-2011-2543

high · 9

Buffer overflow in the cuil component in Cisco Telepresence System Integrator C Series 4.x before TC4.2.0 allows remote authenticated users to cause a denial of service (endpoint reboot or process crash) or possibly execute arbitrary code via a long location parameter to the getxml program, aka Bug ID CSCtq46496.

9
CVSS
11.5%
EPSS (exploit prob.)
96th
EPSS percentile
2011-09-23
Published

AV:N/AC:L/Au:S/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
ciscotelepresence_codec_c40all versions
ciscotelepresence_codec_c60all versions
ciscotelepresence_codec_c90all versions
ciscotelepresence_c_series_softwaretc4.0.0
ciscotelepresence_c_series_softwaretc4.0.1
ciscotelepresence_c_series_softwaretc4.0.4
ciscotelepresence_c_series_softwaretc4.1.0
ciscotelepresence_c_series_softwaretc4.1.1
ciscotelepresence_c_series_softwaretc4.1.2

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2011-2543