Design Flaw in Cisco WebEx Meetings Server Exposes Sensitive Data
CVE-2018-0111
5.3MEDIUM
Summary
A design flaw in Cisco WebEx Meetings Server allows unauthenticated remote attackers to gain access to sensitive application data. This vulnerability can be exploited to gather critical information about the internal network, potentially enabling further reconnaissance attacks. Attackers may leverage available resources to exploit this weakness, leading to an unintended exposure of internal configurations and sensitive data that should remain protected. Organizations using affected versions of Cisco WebEx Meetings Server should prioritize assessing their security posture to mitigate potential risks.
Affected Version(s)
Cisco WebEx Meetings Server Cisco WebEx Meetings Server
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved