PT-2022-4711 · Cisco · Cisco Webex App

Bruce

+2

·

Published

2022-09-07

·

Updated

2022-09-13

·

CVE-2022-20863

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Cisco Webex App versions (affected versions not specified)
Description A vulnerability in the messaging interface of Cisco Webex App could allow an unauthenticated, remote attacker to manipulate links or other content within the messaging interface. This issue exists because the affected software does not properly handle character rendering. An attacker could exploit this by sending messages within the application interface, potentially allowing them to conduct phishing or spoofing attacks. The vulnerability is also related to errors in processing images of various symbols, which could impact data integrity.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2022-05601
CVE-2022-20863

Affected Products

Cisco Webex App