CVE-2015-4208

Severity CVSS v4.0:
Pending analysis
Type:
CWE-89 SQL Injection
Publication date:
24/06/2015
Last modified:
12/04/2025

Description

Cisco WebEx Meeting Center does not properly restrict the content of URLs in GET requests, which allows remote attackers to obtain sensitive information or conduct SQL injection attacks via vectors involving read access to a request, aka Bug ID CSCup88398.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:webex_meeting_center:-:*:*:*:*:*:*:*