CVE-2020-3143
A vulnerability in the video endpoint API (xAPI) of Cisco TelePresence Collaboration Endpoint (CE) Software, Cisco TelePresence Codec (TC) Software, and Cisco RoomOS Software could allow an authenticated, remote attacker to conduct directory traversal attacks on an affected device. The vulnerability is due to insufficient validation of user-supplied input to the xAPI of the affected software. An attacker could exploit this vulnerability by sending a crafted request to the xAPI. A successful exploit could allow the attacker to read and write arbitrary files in the system. To exploit this vulnerability, an attacker would need either an In-Room Control or administrator account.
EPSS 1.69% · 82.6th percentile
Risk Scores
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| cisco | telepresence_mx700_firmware | |
| cisco | webex_board_70s_firmware | |
| cisco | telepresence_mx800_firmware | |
| Cisco | Cisco TelePresence TC Software | * |
| cisco | webex_dx70_firmware | |
| cisco | telepresence_codec_c40_firmware | |
| cisco | webex_board_55s_firmware | |
| cisco | sx20_firmware | |
| cisco | webex_dx80_firmware | |
| cisco | webex_board_85s_firmware | |
| cisco | sx80_firmware | |
| cisco | webex_room_55_firmware | |
| cisco | telepresence_codec_c90_firmware | |
| cisco | webex_room_70_firmware | |
| cisco | ex90_firmware | |
| cisco | webex_board_55_firmware | |
| cisco | telepresence_codec_c60_firmware | |
| cisco | sx10_firmware | |
| cisco | telepresence_mx300_firmware | |
| cisco | telepresence_mx200_firmware |
…and 2 more
Exploit Intelligence
Timeline
- Jan 23, 2020 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Nov 6, 2022 EPSS Score
- Jan 8, 2023 EPSS Score
References
- 20200122 Cisco TelePresence Collaboration Endpoint, TelePresence Codec, and RoomOS Software Path Traversal Vulnerability vendor-advisory
- https://nvd.nist.gov/vuln/detail/CVE-2020-3143 advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200122-fmc-auth advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200122-ios-xr-evpn advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-sd-wan-cred-EVGSF259 advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200122-ios-xr-routes advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200122-sdwan-priv-esc advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200122-on-prem-dos advisory
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20200122-ios-xr-dos advisory