8.8
CVSSv3

CVE-2022-20763

Published: 06/04/2022 Updated: 07/11/2023
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 580
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

A vulnerability in the login authorization components of Cisco Webex Meetings could allow an authenticated, remote malicious user to inject arbitrary Java code. This vulnerability is due to improper deserialization of Java code within login requests. An attacker could exploit this vulnerability by sending malicious login requests to the Cisco Webex Meetings service. A successful exploit could allow the malicious user to inject arbitrary Java code and take arbitrary actions within the Cisco Webex Meetings application.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex meetings online wbs42.2.1-1

Vendor Advisories

A vulnerability in the login authorization components of Cisco Webex Meetings could allow an authenticated, remote attacker to inject arbitrary Java code This vulnerability is due to improper deserialization of Java code within login requests An attacker could exploit this vulnerability by sending malicious login requests to the Cisco Webex Meeti ...