Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

Cisco Webex Meetings and Webex Meetings Server Multimedia Sharing Security Bypass Vulnerability

cisco-sa-webex-multimedia-26DpqVRO · Medium · Published · Updated

A vulnerability in the multimedia viewer feature of Cisco Webex Meetings and Cisco Webex Meetings Server could allow an authenticated, remote attacker to bypass security protections. This vulnerability is due to unsafe handling of shared content within the multimedia viewer feature. An attacker could exploit this vulnerability by sharing a file through the multimedia viewer feature. A successful exploit could allow the attacker to bypass security protections and prevent warning dialogs from appearing before files are offered to other users. Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability. This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-multimedia-26DpqVRO

Cisco advisory · CSAF JSON

Workarounds

There are no workarounds that address this vulnerability.

CVEsCVE-2021-1517
Cisco Bug IDsCSCvx80691, CSCvx82557
CVSS ScoreBase 5.0
Base 5.0 CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:N/I:L/A:N/E:X/RL:X/RC:X
Product Names From Source
Cisco WebEx Meetings Server, Cisco Webex Meetings Desktop App

Related Products

Product CVE Evidence
Cisco Webex Meetings Desktop App CVE-2021-1517 Cisco OpenVuln
Cisco Webex Meetings CVE-2021-1517 Cisco OpenVuln
Cisco WebEx Meetings Server CVE-2021-1517 Cisco OpenVuln