4
CVSSv2

CVE-2014-3294

Published: 10/06/2014 Updated: 08/09/2016
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

A vulnerability in Cisco WebEx Meeting Server could allow an authenticated, remote malicious user to acquire sensitive information. The vulnerability is due to inclusion of sensitive information in URLs. An attacker could exploit this vulnerability by viewing application URL requests that contain the sensitive information. Cisco has confirmed the vulnerability in a security notice; however, software updates are not available. To exploit this vulnerability, an attacker must authenticate to an affected device. This access requirement decreases the likelihood of a successful exploit.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex meetings server -

Vendor Advisories

A vulnerability in Cisco WebEx Meeting Server could allow an authenticated, remote attacker to acquire sensitive information The vulnerability is due to inclusion of sensitive information in URLs An attacker could exploit this vulnerability by viewing application URL requests that contain the sensitive information Cisco has confirmed the vuln ...