CVE-2015-0620: Cisco Telepresence Management Suite

Medium severity, CVSS 4.0. EPSS: 1.3% chance of exploitation in the next 30 days.

The XML parser in Cisco TelePresence Management Suite (TMS) 14.3(.2) and earlier does not properly handle external entities, which allows remote authenticated users to cause a denial of service via POST requests, aka Bug ID CSCus51494.

Affected products

  • Cisco Telepresence Management Suite: up to and including 14.3\(.2\); version 14.3 only; version 14.3(.1) only

Published 2015-02-18. Last modified 2026-06-17.