5
CVSSv2

CVE-2015-0595

Published: 02/02/2015 Updated: 08/09/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

The XMLAPI in Cisco WebEx Meetings Server 1.5(.1.131) and previous versions allows remote malicious users to obtain sensitive information by reading return messages from crafted GET requests, aka Bug ID CSCuj67079.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex meetings server

Vendor Advisories

A vulnerability in the XML application programming interface (API) of Cisco WebEx Meetings Server could allow an unauthenticated, remote attacker to view sensitive information The vulnerability is due to improper sanitization of return messages An attacker could exploit this vulnerability by sending crafted GET requests to a vulnerable device ...