Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vhrh-8565-4xq6

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The File Transfer feature in WebEx Meetings Client in Cisco WebEx Meetings Server and WebEx Meeting Center does not verify that a requested file was an offered file, which allows remote attackers to read arbitrary files via a modified request, aka Bug IDs CSCup62442 and CSCup58463.

The File Transfer feature in WebEx Meetings Client in Cisco WebEx Meetings Server and WebEx Meeting Center does not verify that a requested file was an offered file, which allows remote attackers to read arbitrary files via a modified request, aka Bug IDs CSCup62442 and CSCup58463.

EPSS

Процентиль: 52%
0.00294
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
больше 11 лет назад

The File Transfer feature in WebEx Meetings Client in Cisco WebEx Meetings Server and WebEx Meeting Center does not verify that a requested file was an offered file, which allows remote attackers to read arbitrary files via a modified request, aka Bug IDs CSCup62442 and CSCup58463.

EPSS

Процентиль: 52%
0.00294
Низкий

Дефекты

CWE-20