Authorization Bypass in Cisco WebEx Meeting Center
CVE-2015-4209
Currently unrated
Summary
Cisco WebEx Meeting Center contains a vulnerability that fails to properly authenticate requests to access a host's calendar. This flaw allows remote attackers to exploit the system by generating a list of scheduled meetings and subsequently querying each one through calendar requests. By doing so, they can gain unauthorized access to sensitive meeting information, posing a serious risk to user privacy and data security.
References
Timeline
Vulnerability published
Vulnerability Reserved