Vulnerabilities > Cisco > Webex Meetings Server > Critical

DATE CVE VULNERABILITY TITLE RISK
2017-02-01 CVE-2017-3823 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
An issue was discovered in the Cisco WebEx Extension before 1.0.7 on Google Chrome, the ActiveTouch General Plugin Container before 106 on Mozilla Firefox, the GpcContainer Class ActiveX control plugin before 10031.6.2017.0126 on Internet Explorer, and the Download Manager ActiveX control plugin before 2.1.0.10 on Internet Explorer.
network
cisco CWE-119
critical
9.3
2016-09-17 CVE-2016-1482 OS Command Injection vulnerability in Cisco Webex Meetings Server 2.6.0
Cisco WebEx Meetings Server 2.6 allows remote attackers to execute arbitrary commands by injecting these commands into an application script, aka Bug ID CSCuy83130.
network
cisco CWE-78
critical
9.3
2015-02-07 CVE-2015-0589 Improper Input Validation vulnerability in Cisco Webex Meetings Server 1.0/1.1/1.5
The administrative web interface in Cisco WebEx Meetings Server 1.0 through 1.5 allows remote authenticated users to execute arbitrary OS commands with root privileges via unspecified fields, aka Bug ID CSCuj40460.
network
low complexity
cisco CWE-20
critical
9.0