CVE-2017-12363

Severity CVSS v4.0:
Pending analysis
Type:
CWE-264 Permissions, Privileges, and Access Control
Publication date:
30/11/2017
Last modified:
20/04/2025

Description

A vulnerability in Cisco WebEx Meeting Server could allow an unauthenticated, remote attacker to modify the welcome message of a meeting on an affected system. The vulnerability is due to insufficient security settings on meetings. An attacker could exploit this vulnerability by modifying the welcome message to a meeting. A successful exploit could allow the attacker to modify the welcome message of any known meeting. Cisco Bug IDs: CSCvf68695.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:webex_meetings_server:2.6.0.8:*:*:*:*:*:*:*
cpe:2.3:a:cisco:webex_meetings_server:2.7:*:*:*:*:*:*:*