#VU17432 Information disclosure in Cisco TelePresence Management Suite - CVE-2019-1660
Published: February 7, 2019
Cisco TelePresence Management Suite
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to obtain potentially sensitive information.
The vulnerability exists in the Simple Object Access Protocol (SOAP) due to a lack of proper access and authentication controls on the affected TMS software. A remote attacker can gain access to internal, trusted networks to send crafted SOAP calls to the affected device and access system management tools.