Design Flaw in Cisco WebEx Meetings Server Exposes Sensitive Data
CVE-2018-0111

5.3MEDIUM

Key Information:

Vendor
Cisco
Vendor
CVE Published:
18 January 2018

Summary

A design flaw in Cisco WebEx Meetings Server allows unauthenticated remote attackers to gain access to sensitive application data. This vulnerability can be exploited to gather critical information about the internal network, potentially enabling further reconnaissance attacks. Attackers may leverage available resources to exploit this weakness, leading to an unintended exposure of internal configurations and sensitive data that should remain protected. Organizations using affected versions of Cisco WebEx Meetings Server should prioritize assessing their security posture to mitigate potential risks.

Affected Version(s)

Cisco WebEx Meetings Server Cisco WebEx Meetings Server

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.