383
VMScore

CVE-2018-15461

Published: 10/01/2019 Updated: 09/10/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

A vulnerability in the MyWebex component of Cisco Webex Business Suite could allow an unauthenticated, remote malicious user to conduct a cross-site scripting (XSS) attack. The vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by convincing a user to click a crafted URL. To exploit this vulnerability, the attacker may provide a link that directs a user to a malicious site and use misleading language or instructions to persuade the user to follow the provided link.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex business suite -

Vendor Advisories

A vulnerability in the MyWebex component of Cisco Webex Business Suite could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack The vulnerability is due to insufficient validation of user-supplied input An attacker could exploit this vulnerability by convincing a user to click a crafted URL To exploit this v ...