5
CVSSv2

CVE-2013-1231

Published: 03/05/2013 Updated: 03/05/2013
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The HTTP implementation in Cisco WebEx Node for MCS and WebEx Meetings Server allows remote malicious users to read cache files via a crafted request, aka Bug IDs CSCue36664 and CSCue36629.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex node for mcs -

cisco webex meetings server -

Vendor Advisories

A vulnerability in multiple Cisco WebEx products could allow an unauthenticated, remote attacker to read files from the cache directory The vulnerability is due to insufficient input validation An attacker could exploit this vulnerability by passing a crafted HTTP request to a WebEx node and read files from the cache directory Cisco has confir ...