CVE-2015-0595: Infoleak
Published Feb 2, 2015
·Updated
The XMLAPI in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to obtain sensitive information by reading return messages from crafted GET requests, aka Bug ID CSCuj67079.
Affected Software
1 affected component
Cisco Webex Meetings Server<=1.5\(.1.131\)
Event History
Feb 2, 2015
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0595?
CVE-2015-0595 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2015-0595?
To fix CVE-2015-0595, upgrade Cisco WebEx Meetings Server to version 1.5(1.132) or later.
3
What systems are affected by CVE-2015-0595?
CVE-2015-0595 affects Cisco WebEx Meetings Server versions 1.5 and earlier.
4
What type of vulnerability is CVE-2015-0595?
CVE-2015-0595 is an information disclosure vulnerability.
5
How can attackers exploit CVE-2015-0595?
Attackers can exploit CVE-2015-0595 by sending crafted GET requests to retrieve sensitive information.