9.3
CVSSv2

CVE-2009-2876

Published: 18/12/2009 Updated: 17/08/2017
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Heap-based buffer overflow in atas32.dll in the Cisco WebEx WRF Player 26.x prior to 26.49.32 (aka T26SP49EP32) for Windows, 27.x prior to 27.10.x (aka T27SP10) for Windows, 26.x prior to 26.49.35 for Mac OS X and Linux, and 27.x prior to 27.11.8 for Mac OS X and Linux allows remote malicious users to cause a denial of service (application crash) or execute arbitrary code via a crafted WebEx Recording Format (WRF) file, a different vulnerability than CVE-2009-2878 and CVE-2009-2879.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex 27.00

cisco webex 26.00

Vendor Advisories

Multiple buffer overflow vulnerabilities exist in the Cisco WebEx Recording Format (WRF) Player In some cases, exploitation of the vulnerabilities could allow a remote attacker to execute arbitrary code on the system of a targeted user The Cisco WebEx WRF Player is an application that is used to play back WebEx meeting recordings that ...