Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2989▼ 87 respecto a la semana anterior
Críticas / altas1458▲ 97 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)353▼ 157 respecto a la semana anterior
198 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5) | 1.1% | — | Cisco Webex Meetings Online | 17/8/2020 | 17/6/2026 | A vulnerability in the contacts feature of Cisco Webex Meetings could allow an authenticated, remote attacker with a legitimate user account to access sensitive information. The vulnerability is due to improper access restrictions on users who are added within user contacts. An attacker on one Webex Meetings site… | |
| Modificada | Media (6.1) | 0.83% | — | Cisco Webex Meetings Online | 17/8/2020 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Webex Meetings could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of the affected service. The vulnerability is due to insufficient validation of user-supplied… | |
| Modificada | Media (4.3) | 0.72% | — | Cisco Webex Meetings Online | 17/8/2020 | 17/6/2026 | A vulnerability in the scheduled meeting template feature of Cisco Webex Meetings could allow an authenticated, remote attacker to delete a scheduled meeting template that belongs to another user in their organization. The vulnerability is due to insufficient authorization enforcement for requests to delete scheduled… | |
| Modificada | Media (4.3) | 0.72% | — | Cisco Webex Meetings Online | 17/8/2020 | 17/6/2026 | A vulnerability in the scheduled meeting template feature of Cisco Webex Meetings could allow an authenticated, remote attacker to create a scheduled meeting template that would belong to another user in their organization. The vulnerability is due to insufficient authorization enforcement for the creation of… | |
| Modificada | Media (4.3) | 1.2% | — | Cisco Webex MeetingsCisco Webex Meetings Server | 16/7/2020 | 17/6/2026 | A vulnerability in certain web pages of Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to modify a web page in the context of a browser. The vulnerability is due to improper checks on parameter values within affected pages. An attacker could exploit this… | |
| Modificada | Crítica (9.8) | 2.4% | — | Cisco Webex MeetingsCisco Webex Meetings Server | 18/6/2020 | 17/6/2026 | A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could allow an unauthenticated, remote attacker to gain unauthorized access to a vulnerable Webex site. The vulnerability is due to improper handling of authentication tokens by a vulnerable Webex site. An attacker could exploit this vulnerability… | |
| Modificada | Media (5.5) | 0.37% | — | Cisco Webex Meetings | 18/6/2020 | 17/6/2026 | A vulnerability in Cisco Webex Meetings Desktop App for Windows could allow an authenticated, local attacker to gain access to sensitive information on an affected system. The vulnerability is due to unsafe usage of shared memory that is used by the affected software. An attacker with permissions to view system memory… | |
| Modificada | Alta (8.8) | 3.8% | — | Cisco Webex Meetings | 18/6/2020 | 17/6/2026 | A vulnerability in the software update feature of Cisco Webex Meetings Desktop App for Mac could allow an unauthenticated, remote attacker to execute arbitrary code on an affected system. The vulnerability is due to improper validation of cryptographic protections on files that are downloaded by the application as… | |
| Modificada | Alta (7.5) | 4.1% | — | Cisco Webex Meetings | 18/6/2020 | 17/6/2026 | A vulnerability in Cisco Webex Meetings Desktop App could allow an unauthenticated, remote attacker to execute programs on an affected end-user system. The vulnerability is due to improper validation of input that is supplied to application URLs. The attacker could exploit this vulnerability by persuading a user to… | |
| Modificada | Alta (7.8) | 2.0% | — | Cisco Webex Network Recording PlayerCisco Webex MeetingsCisco Webex Meetings OnlineCisco Webex Meetings Server | 15/4/2020 | 17/6/2026 | A vulnerability in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerability exists due to insufficient validation of certain elements with a Webex recording stored in either the… | |
| Modificada | Baja (3.5) | 0.86% | — | Cisco Webex Meetings Server | 13/4/2020 | 17/6/2026 | vulnerability within the Multimedia Viewer feature of Cisco Webex Meetings could allow an authenticated, remote attacker to bypass security protections. The vulnerability is due to missing security warning dialog boxes when a room host views shared multimedia files. An authenticated, remote attacker could exploit this… | |
| Modificada | Media (4.3) | 0.51% | — | Cisco Webex Meetings | 4/3/2020 | 17/6/2026 | A vulnerability in the multicast DNS (mDNS) protocol configuration of Cisco Webex Meetings Client for MacOS could allow an unauthenticated adjacent attacker to obtain sensitive information about the device on which the Webex client is running. The vulnerability exists because sensitive information is included in the… | |
| Modificada | Alta (7.4) | 0.90% | — | Cisco Intelligence ProximityCisco JabberCisco MeetingCisco Webex Meetings+4 | 4/3/2020 | 17/6/2026 | A vulnerability in the SSL implementation of the Cisco Intelligent Proximity solution could allow an unauthenticated, remote attacker to view or alter information shared on Cisco Webex video devices and Cisco collaboration endpoints if the products meet the conditions described in the Vulnerable Products section. The… | |
| Modificada | Alta (7.8) | 1.9% | — | Cisco Webex MeetingsCisco Webex Meetings OnlineCisco Webex Meetings ServerCisco Webex Network Recording Player | 4/3/2020 | 17/6/2026 | Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilities are due to insufficient validation of certain elements within a Webex recording that is stored… | |
| Modificada | Alta (7.8) | 2.4% | — | Cisco Webex MeetingsCisco Webex Meetings OnlineCisco Webex Meetings ServerCisco Webex Network Recording Player | 4/3/2020 | 17/6/2026 | Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilities are due to insufficient validation of certain elements within a Webex recording that is stored… | |
| Modificada | Alta (7.5) | 1.5% | — | Cisco Webex Meetings Online | 26/1/2020 | 17/6/2026 | A vulnerability in Cisco Webex Meetings Suite sites and Cisco Webex Meetings Online sites could allow an unauthenticated, remote attendee to join a password-protected meeting without providing the meeting password. The connection attempt must initiate from a Webex mobile application for either iOS or Android. The… | |
| Modificada | Media (5.3) | 0.38% | — | Cisco Webex MeetingsCisco Webex Teams | 26/11/2019 | 17/6/2026 | A vulnerability in the loading mechanism of specific dynamic link libraries in Cisco Webex Teams for Windows could allow an authenticated, local attacker to perform a DLL hijacking attack. To exploit this vulnerability, the attacker would need to have valid credentials on the Windows system. The vulnerability is due… | |
| Modificada | Media (5.3) | 1.6% | — | Cisco Webex Meetings OnlineCisco Webex Meetings ServerCisco Webex Event CenterCisco Webex Meeting Center+2 | 26/11/2019 | 17/6/2026 | A vulnerability in web interface of the Cisco Webex Event Center, Cisco Webex Meeting Center, Cisco Webex Support Center, and Cisco Webex Training Center could allow an unauthenticated, remote attacker to guess account usernames. The vulnerability is due to missing CAPTCHA protection in certain URLs. An attacker could… | |
| Modificada | Media (5.4) | 1.1% | — | Cisco Webex Meetings | 26/11/2019 | 17/6/2026 | A vulnerability in the Webex Network Recording Admin page of Cisco Webex Meetings could allow an authenticated, remote attacker to elevate privileges in the context of the affected page. To exploit this vulnerability, the attacker must be logged in as a low-level administrator. The vulnerability is due to insufficient… | |
| Modificada | Alta (7.8) | 1.4% | — | Cisco Webex Business SuiteCisco Webex Meetings OnlineCisco Webex Meetings Server | 26/11/2019 | 17/6/2026 | Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilities exist due to insufficient validation of certain elements with a Webex recording stored in… | |
| Modificada | Alta (7.8) | 1.4% | — | Cisco Webex Business SuiteCisco Webex Meetings OnlineCisco Webex Meetings Server | 26/11/2019 | 17/6/2026 | Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilities exist due to insufficient validation of certain elements with a Webex recording stored in… | |
| Modificada | Media (5.9) | 0.87% | — | Cisco Webex Meetings | 21/8/2019 | 17/6/2026 | A vulnerability in Cisco Webex Meetings Mobile (iOS) could allow an unauthenticated, remote attacker to gain unauthorized read access to sensitive data by using an invalid Secure Sockets Layer (SSL) certificate. The vulnerability is due to insufficient SSL certificate validation by the affected software. An attacker… | |
| Modificada | Media (6.1) | 1.1% | — | Cisco Webex Meetings Server | 8/8/2019 | 17/6/2026 | A vulnerability in the web-based management interface of Cisco Webex Meetings Server Software could allow an unauthenticated, remote attacker to redirect a user to an undesired web page. The vulnerability is due to improper input validation of the URL parameters in an HTTP request that is sent to an affected device.… | |
| Modificada | Alta (7.8) | 1.5% | — | Cisco Webex Business SuiteCisco Webex Meetings OnlineCisco Webex Meetings Server | 7/8/2019 | 17/6/2026 | Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilities exist because the affected software improperly validates Advanced Recording Format (ARF) and… | |
| Modificada | Alta (7.8) | 1.5% | — | Cisco Webex Business SuiteCisco Webex Meetings OnlineCisco Webex Meetings Server | 7/8/2019 | 17/6/2026 | Multiple vulnerabilities in Cisco Webex Network Recording Player for Microsoft Windows and Cisco Webex Player for Microsoft Windows could allow an attacker to execute arbitrary code on an affected system. The vulnerabilities exist because the affected software improperly validates Advanced Recording Format (ARF) and… |