CVE-2012-2486 - CVE House
Back to Database
Status published High CVE-2012-2486

The Cisco Discovery Protocol (CDP) implementation on Cisco TelePresence Multipoint...

Vulnerability Description

The Cisco Discovery Protocol (CDP) implementation on Cisco TelePresence Multipoint Switch before 1.9.0, Cisco TelePresence Immersive Endpoint Devices before 1.9.1, Cisco TelePresence Manager before 1.9.0, and Cisco TelePresence Recording Server before 1.8.1 allows remote attackers to execute arbitrary code by leveraging certain adjacency and sending a malformed CDP packet, aka Bug IDs CSCtz40953, CSCtz40947, CSCtz40965, and CSCtz40953.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2012-2486

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

telepresence multipoint switch software, telepresence multipoint switch, telepresence system software, telepresence system 1300 65, telepresence system 3000, telepresence system 3010, telepresence system 3200, telepresence system 3210, telepresence system t3, telepresence system tx1300 47, telepresence system tx1310 65, telepresence system tx9000, telepresence system tx9200, telepresence manager, telepresence recording server
Vulnerable Versions:
0, 1.0.4.0, 1.0.4.0\(21\), 1.1.0, 1.1.0\(254\), 1.1.1, 1.1.1\(30\), 1.1.2, 1.1.2\(6\), 1.5.0, 1.5.0\(222\), 1.5.1, 1.5.1\(2\), 1.5.2, 1.5.2\(21\), 1.5.3, 1.5.3.12, 1.5.4, 1.5.4\(4\), 1.5.5, 1.5.5\(1\), 1.5.6, 1.5.6\(1\), 1.6.0, 1.6.0\(108\), 1.6.1, 1.6.1\(2\), 1.6.2, 1.6.2\(3\), 1.6.3, 1.6.3\(2\), 1.6.4, 1.6.4\(3\), 1.7.0, 1.7.0.1\(5\), 1.7.1\(15\), 1.7.2\(75\), 1.7.3\(2\), 1.8.0, 1.8.0\(1026\), 1.8.1\(1041\), 1.8.2, 1.8.2\(2\), 1.2.3\(1101\), 1.3.2\(1393\), 1.4.7\(2229\), 1.5.1\(2082\), 1.5.3\(2115\), 1.5.10\(3648\), 1.5.11\(3659\), 1.5.12\(3701\), 1.5.13\(3717\), 1.6.0\(3954\), 1.6.2\(4023\), 1.6.3\(4042\), 1.6.4\(4072\), 1.6.5\(4097\), 1.6.6\(4109\), 1.6.7\(4212\), 1.6.8\(4222\), 1.7.0.1\(4764\), 1.7.0.2\(4719\), 1.7.1\(4864\), 1.7.2\(4937\), 1.7.2.1\(2\), 1.7.4\(270\), 1.7.5\(42\), 1.7.6\(4\), 1.8.0\(55\), 1.8.1\(34\), 1.8.2\(11\), 1.8.3\(4\), 1.9.0\(46\), 4.0.0, 1.1.0.0, 1.1.0.0\(209\), 1.2.0.0, 1.2.0.0\(200\), 1.3.2\(466\), 1.4.0\(279\), 1.5.1\(420\), 1.5.2\(423\), 1.6.0\(220\), 1.6.2\(64\), 1.6.3\(113\), 1.6.5\(167\), 1.7.1\(732\), 1.7.2\(256\), 1.7.3.1, 1.7.4, 1.7.5\(62\), 1.8.0\(582\), 1.6.2\(31\), 1.6.3\(4\), 1.7.0\(190\), 1.7.1\(22\), 1.7.2.1, 1.7.3\(3\)

Timeline

Official Publish: July 12th, 2012
Last Modified: September 17th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.