CVE-2016-1387: Cisco Telepresence Tc Software

Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.

The XML API in TelePresence Codec (TC) 7.2.0, 7.2.1, 7.3.0, 7.3.1, 7.3.2, 7.3.3, 7.3.4, and 7.3.5 and Collaboration Endpoint (CE) 8.0.0, 8.0.1, and 8.1.0 in Cisco TelePresence Software mishandles authentication, which allows remote attackers to execute control commands or make configuration changes via an API request, aka Bug ID CSCuz26935.

Affected products

  • Cisco Telepresence Tc Software: version 7.2.0 only; version 7.2.1 only; version 7.3.0 only; version 7.3.1 only; version 7.3.2 only; version 7.3.3 only

Published 2016-05-05. Last modified 2026-06-17.