CVE-2014-8034: Medium severity cisco webex meetings server vulnerability
Published Jan 15, 2015
·Updated
Cisco WebEx Meetings Server 1.5 presents the same CAPTCHA challenge for each login attempt, which makes it easier for remote attackers to obtain access via a brute-force approach of guessing usernames, aka Bug ID CSCuj40321.
Affected Software
1 affected component
Cisco Webex Meetings Server=1.5
Event History
Jan 15, 2015
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-8034?
CVE-2014-8034 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2014-8034?
To mitigate CVE-2014-8034, consider implementing additional user verification methods or updating to a patched version of Cisco WebEx Meetings Server if available.
3
What are the risks associated with CVE-2014-8034?
The risks include potential unauthorized access to accounts through brute-force attacks on the CAPTCHA.
4
Is CVE-2014-8034 still relevant today?
CVE-2014-8034 remains relevant for systems running affected versions of Cisco WebEx Meetings Server.
5
Which version of Cisco WebEx Meetings Server is affected by CVE-2014-8034?
CVE-2014-8034 specifically affects Cisco WebEx Meetings Server version 1.5.