Lucene search

K
cveCiscoCVE-2014-3311
HistoryJul 10, 2014 - 11:06 a.m.

CVE-2014-3311

2014-07-1011:06:27
CWE-119
cisco
web.nvd.nist.gov
23
cve-2014-3311
heap-based buffer overflow
webex meetings client
cisco
webex meetings server
webex meeting center
remote code execution
bug ids cscup62463
cscup58467
nvd

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

8.4

Confidence

Low

EPSS

0.031

Percentile

91.1%

Heap-based buffer overflow in the file-sharing feature in WebEx Meetings Client in Cisco WebEx Meetings Server and WebEx Meeting Center allows remote attackers to execute arbitrary code via crafted data, aka Bug IDs CSCup62463 and CSCup58467.

Affected configurations

Nvd
Node
ciscowebex_meeting_centerMatch-
OR
ciscowebex_meetings_serverMatch-
VendorProductVersionCPE
ciscowebex_meeting_center-cpe:2.3:a:cisco:webex_meeting_center:-:*:*:*:*:*:*:*
ciscowebex_meetings_server-cpe:2.3:a:cisco:webex_meetings_server:-:*:*:*:*:*:*:*

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

AI Score

8.4

Confidence

Low

EPSS

0.031

Percentile

91.1%

Related for CVE-2014-3311