Vulnerabilities > Cisco > Webex Meeting Center > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-11-26 CVE-2019-15987 Improper Authentication vulnerability in Cisco products
A vulnerability in web interface of the Cisco Webex Event Center, Cisco Webex Meeting Center, Cisco Webex Support Center, and Cisco Webex Training Center could allow an unauthenticated, remote attacker to guess account usernames.
network
low complexity
cisco CWE-287
5.3
2017-11-30 CVE-2017-12366 Cross-site Scripting vulnerability in Cisco Webex Meeting Center T32.6
A vulnerability in Cisco WebEx Meeting Center could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of an affected system.
network
low complexity
cisco CWE-79
6.1
2017-11-30 CVE-2017-12365 Information Exposure vulnerability in Cisco Webex Meeting Center T32.6
A vulnerability in Cisco WebEx Event Center could allow an authenticated, remote attacker to view unlisted meeting information.
network
low complexity
cisco CWE-200
4.3
2017-11-30 CVE-2017-12360 Unspecified vulnerability in Cisco Webex Meeting Center
A vulnerability in Cisco WebEx Network Recording Player for WebEx Recording Format (WRF) files could allow an attacker to cause a denial of service (DoS) condition.
network
low complexity
cisco
4.3
2017-11-30 CVE-2017-12359 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco Webex Meeting Center and Webex Meetings Server
A Buffer Overflow vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (.arf) files could allow an attacker to execute arbitrary code on a system.
network
low complexity
cisco CWE-119
6.5
2017-11-30 CVE-2017-12297 Improper Input Validation vulnerability in Cisco Webex Meeting Center
A vulnerability in Cisco WebEx Meeting Center could allow an authenticated, remote attacker to initiate connections to arbitrary hosts, aka a "URL Redirection Vulnerability." The vulnerability is due to insufficient access control for HTTP traffic directed to the Cisco WebEx Meeting Center.
network
low complexity
cisco CWE-20
5.0
2017-10-19 CVE-2017-12298 Cross-site Scripting vulnerability in Cisco Webex Meeting Center
A vulnerability in Cisco WebEx Meeting Center could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of an affected system.
network
low complexity
cisco CWE-79
6.1
2017-10-19 CVE-2017-12286 Improper Input Validation vulnerability in Cisco Jabber and Webex Meeting Center
A vulnerability in the web interface of Cisco Jabber could allow an authenticated, local attacker to retrieve user profile information from the affected software, which could lead to the disclosure of confidential information.
local
low complexity
cisco CWE-20
5.5
2017-01-26 CVE-2017-3799 Open Redirect vulnerability in Cisco Webex Meeting Center Wbs28Base
A vulnerability in a URL parameter of Cisco WebEx Meeting Center could allow an unauthenticated, remote attacker to perform site redirection.
network
low complexity
cisco CWE-601
5.4