Vulnerabilities > Cisco > Webex Meetings > 43.4

DATE CVE VULNERABILITY TITLE RISK
2023-07-07 CVE-2023-20133 Cross-site Scripting vulnerability in Cisco Webex Meetings
A vulnerability in the web interface of Cisco Webex Meetings could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface. This vulnerability exists because of insufficient validation of user-supplied input in Webex Events (classic) programs, email templates, and survey questions.
network
low complexity
cisco CWE-79
5.4
2023-07-07 CVE-2023-20180 Cross-Site Request Forgery (CSRF) vulnerability in Cisco Webex Meetings
A vulnerability in the web interface of Cisco Webex Meetings could allow an unauthenticated, remote attacker to conduct a cross-site request forgery (CSRF) attack on an affected system. This vulnerability is due to insufficient CSRF protections for the web interface on an affected system.
network
low complexity
cisco CWE-352
4.3
2018-05-02 CVE-2018-0264 Improper Input Validation vulnerability in Cisco products
A vulnerability in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow an unauthenticated, remote attacker to execute arbitrary code on the system of a targeted user.
network
low complexity
cisco CWE-20
critical
9.6