7.8
CVSSv2

CVE-2014-2132

Published: 08/05/2014 Updated: 08/05/2014
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Cisco WebEx Recording Format (WRF) player and Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allow remote malicious users to cause a denial of service (application crash) via a crafted (1) .wrf or (2) .arf file that triggers a buffer over-read, aka Bug ID CSCuh52768.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex recording format player t28

cisco webex advanced recording format player t28

cisco webex recording format player t29

cisco webex advanced recording format player t29

cisco webex advanced recording format player t27ld

cisco webex recording format player t27ld

Vendor Advisories

Multiple buffer overflow vulnerabilities exist in the Cisco WebEx Recording Format (WRF) and Advanced Recording Format (ARF) Players Exploitation of these vulnerabilities could allow a remote attacker to cause an affected player to crash and, in some cases, could allow a remote attacker to execute arbitrary code on the system of a targeted user ...