5
CVSSv2

CVE-2014-8036

Published: 10/01/2015 Updated: 08/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

The outlookpa component in Cisco WebEx Meetings Server does not properly validate API input, which allows remote malicious users to modify a meeting's invite list via a crafted URL, aka Bug ID CSCuj40254.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex meetings server -

Vendor Advisories

A vulnerability in the outlookpa page of Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to modify the invite list of scheduled meetings The vulnerability is due to improper sanitization of application programming interface (API) input An attacker could exploit this vulnerability by submitting crafted URL requests to ...