CVE-2014-0675

The Expressway component in Cisco TelePresence Video Communication Server (VCS) uses the same default X.509 certificate across different customers' installations, which makes it easier for remote attackers to conduct man-in-the-middle attacks against SSL sessions by leveraging the certificate's trust relationship, aka Bug ID CSCue07471.
Configurations

Configuration 1 (hide)

cpe:2.3:h:cisco:telepresence_video_communication_server:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2014-01-23 04:41

Updated : 2023-12-10 11:31


NVD link : CVE-2014-0675

Mitre link : CVE-2014-0675

CVE.ORG link : CVE-2014-0675


JSON object : View

Products Affected

cisco

  • telepresence_video_communication_server
CWE
CWE-255

Credentials Management Errors