NA

CVE-2023-20180

Published: 07/07/2023 Updated: 08/02/2024
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

A vulnerability in the web interface of Cisco Webex Meetings could allow an unauthenticated, remote malicious user to conduct a cross-site request forgery (CSRF) attack on an affected system. This vulnerability is due to insufficient CSRF protections for the web interface on an affected system. An attacker could exploit this vulnerability by persuading a user of the interface to click a malicious link. A successful exploit could allow the malicious user to perform arbitrary actions. These actions could include joining meetings and scheduling training sessions.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco webex meetings 39.7.4

cisco webex meetings 39.10

cisco webex meetings 39.11

cisco webex meetings 39.6

cisco webex meetings 39.7

cisco webex meetings 39.7.7

cisco webex meetings 39.8

cisco webex meetings 39.8.2

cisco webex meetings 39.8.3

cisco webex meetings 39.8.4

cisco webex meetings 39.9

cisco webex meetings 39.9.1

cisco webex meetings 40.1

cisco webex meetings 40.2

cisco webex meetings 40.4

cisco webex meetings 40.4.10

cisco webex meetings 40.6

cisco webex meetings 40.6.2

cisco webex meetings 42.10

cisco webex meetings 42.11

cisco webex meetings 42.6

cisco webex meetings 42.9

cisco webex meetings 42.12

cisco webex meetings 42.8

cisco webex meetings 42.7

cisco webex meetings 43.2

cisco webex meetings 43.1

cisco webex meetings 43.3

cisco webex meetings 43.4

cisco webex meetings 43.4.2

cisco webex meetings 43.5.0

cisco webex meetings 43.4.1

Vendor Advisories

Multiple vulnerabilities in the web UI of Cisco Webex Meetings could allow a remote attacker to conduct stored cross-site scripting (XSS) or cross-site request forgery (CSRF) attacks For more information about these vulnerabilities, see the Details section of this advisory Cisco has released software updates that address these vulnerabilities Th ...