6.8
CVSSv2

CVE-2014-3305

Published: 26/07/2014 Updated: 29/08/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco WebEx Meetings Server 1.5(.1.131) and previous versions allows remote malicious users to hijack the authentication of unspecified victims via unknown vectors, aka Bug ID CSCuj81735.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex meetings server 1.5\\(.1.6\\)

cisco webex meetings server 1.5

cisco webex meetings server

Vendor Advisories

A vulnerability in the web framework code of Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to perform a cross-site request forgery (CSRF) attack The vulnerability is due to insufficient CSRF protections An attacker could exploit this vulnerability by convincing the user of the affected system to follow a malicious l ...