CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Cisco. It may be remotely exploitable.
CVE
CVE-2016-1387
Severity
CRITICAL
CVSS
9.8
EPSS
1.78%
Cisco
Original NVD Description
The XML API in TelePresence Codec (TC) 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.3.2, 7.3.3, 7.3.4, and 7.3.5 and Collaboration Endpoint (CE) 8.0.0, 8.0.1, and 8.1.0 in Cisco TelePresence Software mishandles authentication, which allows remote attackers to execute control commands or make configuration changes via an API request, aka Bug ID CSCuz26935.