PT-2014-5205 · Cisco · Webex Meetings Client+2
Published
2014-07-10
·
Updated
2017-08-29
·
CVE-2014-3310
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Cisco WebEx Meetings Server and WebEx Meeting Center (affected versions not specified)
Description
The issue concerns the File Transfer feature in the WebEx Meetings Client, which fails to verify if a requested file was an offered file. This allows remote attackers to read arbitrary files by modifying a request.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Webex Meeting Center
Webex Meetings Client
Webex Meetings Server