Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2017-12360

Опубликовано: 30 нояб. 2017
Источник: nvd
CVSS3: 4.3
CVSS2: 4.3
EPSS Низкий

Описание

A vulnerability in Cisco WebEx Network Recording Player for WebEx Recording Format (WRF) files could allow an attacker to cause a denial of service (DoS) condition. An attacker could exploit this vulnerability by providing a user with a malicious WRF file via email or URL and convincing the user to open the file. A successful exploit could cause an affected player to crash, resulting in a DoS condition. This vulnerability affects Cisco WebEx Business Suite meeting sites, Cisco WebEx Meetings sites, and Cisco WebEx WRF players. Cisco Bug IDs: CSCve30294, CSCve30301.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:cisco:webex_meeting_center:t29:*:*:*:*:*:*:*
cpe:2.3:a:cisco:webex_meeting_center:t30:*:*:*:*:*:*:*
cpe:2.3:a:cisco:webex_meeting_center:t31:*:*:*:*:*:*:*
cpe:2.3:a:cisco:webex_meeting_center:t32:*:*:*:*:*:*:*

EPSS

Процентиль: 52%
0.00296
Низкий

4.3 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-399
NVD-CWE-noinfo

Связанные уязвимости

CVSS3: 4.3
github
больше 3 лет назад

A vulnerability in Cisco WebEx Network Recording Player for WebEx Recording Format (WRF) files could allow an attacker to cause a denial of service (DoS) condition. An attacker could exploit this vulnerability by providing a user with a malicious WRF file via email or URL and convincing the user to open the file. A successful exploit could cause an affected player to crash, resulting in a DoS condition. This vulnerability affects Cisco WebEx Business Suite meeting sites, Cisco WebEx Meetings sites, and Cisco WebEx WRF players. Cisco Bug IDs: CSCve30294, CSCve30301.

EPSS

Процентиль: 52%
0.00296
Низкий

4.3 Medium

CVSS3

4.3 Medium

CVSS2

Дефекты

CWE-399
NVD-CWE-noinfo