A vulnerability in the CLI of Cisco TelePresence Collaboration Endpoint (CE) Software could allow an authenticated, local attacker to write files to the /root directory of an affected device. The vulnerability is due to improper permission assignment. An attacker could exploit this vulnerability by logging in as the remotesupport user and writing files to the /root directory of an affected device.
History

Thu, 21 Nov 2024 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2019-10-16T18:36:47.177542Z

Updated: 2024-11-21T19:06:25.578Z

Reserved: 2019-09-06T00:00:00

Link: CVE-2019-15962

cve-icon Vulnrichment

Updated: 2024-08-05T01:03:32.417Z

cve-icon NVD

Status : Modified

Published: 2019-10-16T19:15:15.660

Modified: 2024-11-21T04:29:49.890

Link: CVE-2019-15962

cve-icon Redhat

No data.