First published: Thu Jun 06 2013(Updated: )
The Event Center module in Cisco WebEx Meetings Server does not perform request authentication in all intended circumstances, which allows remote attackers to discover host keys and event passwords via crafted URLs, aka Bug ID CSCue62485.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Webex Meetings Server Software |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2013-1205 is considered high due to its potential for unauthorized access to sensitive information.
To fix CVE-2013-1205, update to the latest version of Cisco WebEx Meetings Server that addresses this vulnerability.
CVE-2013-1205 allows remote attackers to discover host keys and event passwords through crafted URLs.
CVE-2013-1205 affects the Cisco WebEx Meetings Server software.
The impact of CVE-2013-1205 on users includes the risk of unauthorized access to hosted events and sensitive meeting credentials.