Vulnerabilities > Cisco > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2013-12-14 | CVE-2013-6973 | Information Exposure vulnerability in Cisco Webex Training Center Cisco WebEx Training Center allows remote attackers to discover registration IDs via a crafted URL, aka Bug ID CSCul57121. | 4.3 |
2013-12-14 | CVE-2013-6972 | Information Exposure vulnerability in Cisco Webex Training Center Cisco WebEx Training Center allows remote attackers to discover session numbers, and bypass host approval for audio-conference attendance, by reading HTML source code, aka Bug ID CSCul57126. | 5.0 |
2013-12-14 | CVE-2013-6971 | Improper Input Validation vulnerability in Cisco Webex Training Center Open redirect vulnerability in Cisco WebEx Training Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors, aka Bug ID CSCul57140. | 5.8 |
2013-12-14 | CVE-2013-6970 | Information Exposure vulnerability in Cisco Webex Meeting Center Cisco WebEx Meeting Center allows remote attackers to obtain sensitive information by reading verbose error messages within server responses, aka Bug ID CSCul35928. | 5.0 |
2013-12-14 | CVE-2013-6969 | Improper Input Validation vulnerability in Cisco Webex Training Center The training-registration page in Cisco WebEx Training Center allows remote attackers to modify unspecified fields via unknown vectors, aka Bug ID CSCul35990. | 4.3 |
2013-12-14 | CVE-2013-6968 | Information Exposure vulnerability in Cisco Webex Training Center Cisco WebEx Training Center provides different error messages for registration attempts depending on whether the e-mail address exists, which allows remote attackers to enumerate attendees via a series of requests, aka Bug ID CSCul36003. | 5.0 |
2013-12-14 | CVE-2013-6967 | Improper Input Validation vulnerability in Cisco Webex Sales Center Open redirect vulnerability in the mobile-browser subsystem in Cisco WebEx Sales Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors, aka Bug ID CSCul36020. | 5.8 |
2013-12-14 | CVE-2013-6965 | Permissions, Privileges, and Access Controls vulnerability in Cisco Webex Training Center The registration component in Cisco WebEx Training Center provides the training-session URL before e-mail confirmation is completed, which allows remote attackers to bypass intended access restrictions and join an audio conference by entering credential fields from this URL, aka Bug ID CSCul36183. | 5.0 |
2013-12-14 | CVE-2013-6963 | Cross-Site Scripting vulnerability in Cisco Webex Training Center Cross-site scripting (XSS) vulnerability in the registration component in Cisco WebEx Training Center allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCul36207. | 4.3 |
2013-12-14 | CVE-2013-6962 | Cross-Site Scripting vulnerability in Cisco Webex Meeting Center Cross-site scripting (XSS) vulnerability in the mobile-browser subsystem in Cisco WebEx Meeting Center allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCul36228. | 4.3 |