The Event Center module in Cisco WebEx Meetings Server does not perform request authentication in all intended circumstances, which allows remote attackers to discover host keys and event passwords via crafted URLs, aka Bug ID CSCue62485.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-1205 | Vendor Advisory |
Configurations
Information
Published : 2013-06-06 06:02
Updated : 2013-06-06 07:34
NVD link : CVE-2013-1205
Mitre link : CVE-2013-1205
JSON object : View
CWE
CWE-287
Improper Authentication
Products Affected
cisco
- webex_meetings_server