A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to write files to the /root directory of an affected device. The vulnerability is due to improper permission assignment. An attacker could exploit this vulnerability by logging in as the remotesupport user and writing files to the /root directory of an affected device.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2019-10-16T18:36:47.177542Z

Updated: 2024-09-16T22:35:08.820Z

Reserved: 2019-09-06T00:00:00

Link: CVE-2019-15962

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-10-16T19:15:15.660

Modified: 2019-10-22T13:14:52.800

Link: CVE-2019-15962

cve-icon Redhat

No data.