imPC@ndo IT

Tracker / CVE-2014-2199

CVE-2014-2199

Medium 5.0

meetinginfo.do in Cisco WebEx Event Center, WebEx Meeting Center, WebEx Sales Center, WebEx Training Center, WebEx Meetings Server 1.5(.1.131) and earlier, and WebEx Business Suite (WBS) 27 before 27.32.31.16, 28 before 28.12.13.18, and 29 before 29.5.1.12 allows remote attackers to obtain sensitive meeting information by leveraging knowledge of a meeting identifier, aka Bug IDs CSCuo68624 and CSCue46738.

Affected products and versions

cisco webex_business_suite
cisco webex_event_center
cisco webex_meeting_center
cisco webex_meetings_server · … → 1.5\(.1.131\)
cisco webex_sales_center
cisco webex_training_center

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References