First published: Mon Feb 02 2015(Updated: )
Cross-site request forgery (CSRF) vulnerability in Cisco WebEx Meetings Server 1.5(.1.131) and earlier allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuj67163.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Webex Meetings Server | <=1.5\(.1.131\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0596 is rated as a medium severity vulnerability due to the potential for unauthorized access.
To fix CVE-2015-0596, update your Cisco WebEx Meetings Server to version 1.5(1.132) or later.
CVE-2015-0596 can allow remote attackers to perform cross-site request forgery, potentially hijacking user sessions.
Yes, CVE-2015-0596 specifically affects Cisco WebEx Meetings Server versions 1.5 and earlier.
Any user of Cisco WebEx Meetings Server 1.5 and earlier versions may be affected by CVE-2015-0596.