Cisco Unified Videoconferencing Hardcoded User Credentials Authentication Bypass Issue

  Bookmark
 and Share

Cisco Unified Videoconferencing products are a series of video conferencing devices. Cisco Unified Videoconferencing is exposed to an authentication bypass issue that may allow attackers to gain access to the "root", "cs", and "develop" accounts. These accounts contain hardcoded user credentials that cannot be modified or deleted.

Ref: http://www.securityfocus.com/bid/44924

10.48.38 - CVE: CVE-2010-3038,CVE-2010-3037
Platform: Network Device