Vulnerabilities > Cisco > Webex Business Suite

DATE CVE VULNERABILITY TITLE RISK
2019-05-15 CVE-2019-1771 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
A vulnerability in the Cisco Webex Network Recording Player for Microsoft Windows and the Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system.
local
low complexity
cisco CWE-119
7.8
2019-02-07 CVE-2019-1680 Improper Input Validation vulnerability in Cisco Webex Business Suite and Webex Meetings Online
A vulnerability in Cisco Webex Business Suite could allow an unauthenticated, remote attacker to inject arbitrary text into a user's browser.
network
low complexity
cisco CWE-20
4.3
2019-01-10 CVE-2018-15461 Cross-site Scripting vulnerability in Cisco Webex Business Suite
A vulnerability in the MyWebex component of Cisco Webex Business Suite could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack.
network
cisco CWE-79
4.3
2018-07-18 CVE-2018-0379 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
Multiple vulnerabilities exist in the Cisco Webex Network Recording Player for Advanced Recording Format (ARF) and Webex Recording Format (WRF) files.
network
cisco CWE-119
6.8
2018-01-04 CVE-2018-0104 Improper Input Validation vulnerability in Cisco products
A vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow a remote attacker to execute arbitrary code on the system of a targeted user.
network
cisco CWE-20
critical
9.3
2018-01-04 CVE-2018-0103 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
A Buffer Overflow vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow a local attacker to execute arbitrary code on the system of a user.
network
cisco CWE-119
critical
9.3
2014-05-20 CVE-2014-2199 Information Exposure vulnerability in Cisco products
meetinginfo.do in Cisco WebEx Event Center, WebEx Meeting Center, WebEx Sales Center, WebEx Training Center, WebEx Meetings Server 1.5(.1.131) and earlier, and WebEx Business Suite (WBS) 27 before 27.32.31.16, 28 before 28.12.13.18, and 29 before 29.5.1.12 allows remote attackers to obtain sensitive meeting information by leveraging knowledge of a meeting identifier, aka Bug IDs CSCuo68624 and CSCue46738.
network
low complexity
cisco CWE-200
5.0