Lucene search

K
cveCiscoCVE-2014-0682
HistoryJan 29, 2014 - 6:34 p.m.

CVE-2014-0682

2014-01-2918:34:05
CWE-264
cisco
web.nvd.nist.gov
26
cisco
webex
meetings server
cve-2014-0682
remote authenticated users
authorization bypass

CVSS2

4.9

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:S/C:P/I:N/A:P

AI Score

6.5

Confidence

Low

EPSS

0.004

Percentile

72.5%

Cisco WebEx Meetings Server allows remote authenticated users to bypass authorization checks and (1) join arbitrary meetings, or (2) terminate a meeting without having a host role, via a crafted URL, aka Bug ID CSCuj42346.

Affected configurations

Nvd
Node
ciscowebex_meetings_serverMatch-
VendorProductVersionCPE
ciscowebex_meetings_server-cpe:2.3:a:cisco:webex_meetings_server:-:*:*:*:*:*:*:*

CVSS2

4.9

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:S/C:P/I:N/A:P

AI Score

6.5

Confidence

Low

EPSS

0.004

Percentile

72.5%

Related for CVE-2014-0682