Cisco WebEx Meetings Server Stack Trace Vulnerability

Related Vulnerabilities: CVE-2014-3301  

A vulnerability in the ProfileAction controller of Cisco WebEx Meetings Server (CWMS) could allow an unauthenticated, remote attacker to view sensitive information. The vulnerability is due to improper sanitization of returned messages. An attacker could exploit this vulnerability by submitting crafted URL requests to a vulnerable device. Cisco has confirmed the vulnerability in a security notice; however, software updates are not available. To exploit the vulnerability, the attacker may provide a link that directs a user to a malicious site and use misleading language or instructions to persuade the user to follow the provided link.