CVE-2013-6965: Medium severity Cisco Webex Training Center vulnerability
The registration component in Cisco WebEx Training Center provides the training-session URL before e-mail confirmation is completed, which allows remote attackers to bypass intended access restrictions and join an audio conference by entering credential fields from this URL, aka Bug ID CSCul36183.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6965?
CVE-2013-6965 has a moderate severity rating due to its potential to allow unauthorized access to audio conferences.
How do I fix CVE-2013-6965?
To mitigate CVE-2013-6965, update your Cisco WebEx Training Center software to the latest version provided by Cisco.
What vulnerabilities does CVE-2013-6965 exploit?
CVE-2013-6965 exploits a flaw in the registration component that prematurely discloses training-session URLs before email confirmation.
Who is affected by CVE-2013-6965?
Organizations using Cisco WebEx Training Center are affected by CVE-2013-6965, particularly those relying on the registration component.
What impact does CVE-2013-6965 have on users?
CVE-2013-6965 allows remote attackers to bypass access restrictions and potentially join audio conferences within Cisco WebEx Training Center.