Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The Expressway component in Cisco TelePresence Video Communication Server (VCS) uses the same default X.509 certificate across different customers' installations, which makes it easier for remote attackers to conduct man-in-the-middle attacks against SSL sessions by leveraging the certificate's trust relationship, aka Bug ID CSCue07471.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco TelePresence Video Communication Server 信任管理漏洞
Vulnerability Description
Cisco TelePresence Video Communication Server(VCS)是美国思科(Cisco)公司的一款网真视频通信服务器,它能够与统一通信和语音通信环境集成,从而为使用各种通信工具的最终用户提供最佳体验。 Cisco TelePresence VCS中的Expressway组件中存在安全漏洞,该漏洞源于程序对不同用户安装使用相同的默认X.509证书。远程攻击者可借助证书的信任关系利用该漏洞实施对SSL会话的中间人攻击。
CVSS Information
N/A
Vulnerability Type
N/A