CVE-2015-0668: XSS
Published Mar 20, 2015
·Updated
Cross-site scripting (XSS) vulnerability in the administration portal in Cisco WebEx Meetings Server 2.5 and 2.5.99.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCuq66737.
Affected Software
2 affected components
Cisco Webex Meetings Server=2.5
Cisco Webex Meetings Server=2.5.99.2
Event History
Mar 20, 2015
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0668?
CVE-2015-0668 is classified as a high severity vulnerability due to its impact on security through cross-site scripting.
2
How do I fix CVE-2015-0668?
To fix CVE-2015-0668, upgrade to the latest patched version of Cisco WebEx Meetings Server.
3
What types of attacks can exploit CVE-2015-0668?
CVE-2015-0668 can be exploited by remote attackers through cross-site scripting attacks that inject arbitrary web scripts or HTML.
4
Who is affected by CVE-2015-0668?
CVE-2015-0668 affects users of Cisco WebEx Meetings Server versions 2.5 and 2.5.99.2.
5
Is there a workaround for CVE-2015-0668?
There are no known workarounds for CVE-2015-0668, and patching is the recommended solution.