Vulnerabilities > Cisco > Webex Meetings > High

DATE CVE VULNERABILITY TITLE RISK
2020-04-15 CVE-2020-3194 Improper Input Validation vulnerability in Cisco products
A vulnerability in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system.
local
low complexity
cisco CWE-20
7.8
2020-03-04 CVE-2020-3155 Improper Certificate Validation vulnerability in Cisco products
A vulnerability in the SSL implementation of the Cisco Intelligent Proximity solution could allow an unauthenticated, remote attacker to view or alter information shared on Cisco Webex video devices and Cisco collaboration endpoints if the products meet the conditions described in the Vulnerable Products section.
network
high complexity
cisco CWE-295
7.4
2020-03-04 CVE-2020-3128 Improper Input Validation vulnerability in Cisco products
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system.
local
low complexity
cisco CWE-20
7.8
2020-03-04 CVE-2020-3127 Improper Input Validation vulnerability in Cisco products
Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system.
local
low complexity
cisco CWE-20
7.8
2019-02-28 CVE-2019-1674 OS Command Injection vulnerability in Cisco products
A vulnerability in the update service of Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools for Windows could allow an authenticated, local attacker to execute arbitrary commands as a privileged user.
network
low complexity
cisco CWE-78
8.8
2018-01-04 CVE-2018-0103 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
A Buffer Overflow vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow a local attacker to execute arbitrary code on the system of a user.
local
low complexity
cisco CWE-119
7.8
2017-07-25 CVE-2017-6753 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Cisco products
A vulnerability in Cisco WebEx browser extensions for Google Chrome and Mozilla Firefox could allow an unauthenticated, remote attacker to execute arbitrary code with the privileges of the affected browser on an affected system.
network
low complexity
cisco CWE-119
8.8