The Forgot Password feature in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to enumerate administrative accounts via crafted packets, aka Bug IDs CSCuj67166 and CSCuj67159.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2015-0597 | Vendor Advisory |
http://tools.cisco.com/security/center/viewAlert.x?alertId=37240 | Vendor Advisory |
http://www.securityfocus.com/bid/72373 | Third Party Advisory VDB Entry |
http://www.securitytracker.com/id/1031678 | Third Party Advisory VDB Entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/100658 |
Configurations
Information
Published : 2015-02-01 17:59
Updated : 2017-09-07 18:29
NVD link : CVE-2015-0597
Mitre link : CVE-2015-0597
JSON object : View
CWE
Products Affected
cisco
- webex_meetings_server