9.3
CVSSv2

CVE-2014-2136

Published: 08/05/2014 Updated: 08/05/2014
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in Cisco Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted .arf file, aka Bug IDs CSCui72223, CSCul01163, and CSCul01166.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex recording format player t27ld

cisco webex advanced recording format player t27ld

cisco webex recording format player t28

cisco webex advanced recording format player t28

cisco webex advanced recording format player t29

cisco webex recording format player t29

Vendor Advisories

Multiple buffer overflow vulnerabilities exist in the Cisco WebEx Recording Format (WRF) and Advanced Recording Format (ARF) Players Exploitation of these vulnerabilities could allow a remote attacker to cause an affected player to crash and, in some cases, could allow a remote attacker to execute arbitrary code on the system of a targeted user ...