Lucene search

K
cveCiscoCVE-2013-6687
HistoryJan 16, 2014 - 7:55 p.m.

CVE-2013-6687

2014-01-1619:55:04
CWE-255
cisco
web.nvd.nist.gov
23
cisco
webex
meetings server
remote authenticated users
cleartext password
security vulnerability
cve-2013-6687

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

43.5%

The web portal in the Enterprise License Manager component in Cisco WebEx Meetings Server allows remote authenticated users to discover the cleartext administrative password by reading HTML source code, aka Bug ID CSCul33876.

Affected configurations

Nvd
Node
ciscowebex_meetings_serverMatch-
VendorProductVersionCPE
ciscowebex_meetings_server-cpe:2.3:a:cisco:webex_meetings_server:-:*:*:*:*:*:*:*

CVSS2

4

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:L/Au:S/C:P/I:N/A:N

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

43.5%

Related for CVE-2013-6687