Vulnerabilities > Cisco > Conference Director > Medium

DATE CVE VULNERABILITY TITLE RISK
2018-02-08 CVE-2018-0119 Unspecified vulnerability in Cisco Conference Director 20170830
A vulnerability in certain authentication controls in the account services of Cisco Spark could allow an authenticated, remote attacker to interact with and view information on an affected device that would normally be prohibited.
network
low complexity
cisco
4.7
2017-11-16 CVE-2017-12306 Download of Code Without Integrity Check vulnerability in Cisco Conference Director 20170815
A vulnerability in the upgrade process of Cisco Spark Board could allow an authenticated, local attacker to install an unverified upgrade package, aka Signature Verification Bypass.
local
low complexity
cisco CWE-494
4.4