Authorization Bypass in Cisco WebEx Meeting Center
CVE-2015-4209

Currently unrated

Key Information:

Vendor
Cisco
Vendor
CVE Published:
23 June 2015

Summary

Cisco WebEx Meeting Center contains a vulnerability that fails to properly authenticate requests to access a host's calendar. This flaw allows remote attackers to exploit the system by generating a list of scheduled meetings and subsequently querying each one through calendar requests. By doing so, they can gain unauthorized access to sensitive meeting information, posing a serious risk to user privacy and data security.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.