Cisco Webex Meetings Vulnerability Allows Cross-Site Scripting Attacks
CVE-2022-20654
What is CVE-2022-20654?
A cross-site scripting vulnerability exists in the web-based interface of Cisco Webex Meetings, enabling an unauthenticated, remote attacker to perform malicious actions. This issue arises from the insufficient validation of user-supplied input, which can be exploited when an unsuspecting user clicks on a specially crafted link. If successfully exploited, an attacker could execute arbitrary script code within the affected interface, potentially accessing sensitive browser-based information. Cisco has released software updates to mitigate this vulnerability, and no workarounds are currently available.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco Webex Meetings 39.7.7
Cisco Webex Meetings 39.9
Cisco Webex Meetings 40.4.10
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved