PT-2022-4711 · Cisco · Cisco Webex App
Bruce
+2
·
Published
2022-09-07
·
Updated
2022-09-13
·
CVE-2022-20863
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Cisco Webex App versions (affected versions not specified)
Description
A vulnerability in the messaging interface of Cisco Webex App could allow an unauthenticated, remote attacker to manipulate links or other content within the messaging interface. This issue exists because the affected software does not properly handle character rendering. An attacker could exploit this by sending messages within the application interface, potentially allowing them to conduct phishing or spoofing attacks. The vulnerability is also related to errors in processing images of various symbols, which could impact data integrity.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Cisco Webex App