CVE-2015-4209: Infoleak
Published Jun 23, 2015
·Updated
Cisco WebEx Meeting Center does not properly determine authorization for reading a host calendar, which allows remote attackers to obtain sensitive information by obtaining a list of all meetings and then sending a calendar request for each one, aka Bug ID CSCur23913.
Affected Software
1 affected component
Cisco Webex Meeting Center
Event History
Jun 23, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4209?
CVE-2015-4209 has a moderate severity level due to its potential to expose sensitive information.
2
How do I fix CVE-2015-4209?
To fix CVE-2015-4209, ensure you have the latest security patches installed for Cisco WebEx Meeting Center.
3
What type of vulnerability is CVE-2015-4209?
CVE-2015-4209 is an authorization bypass vulnerability that affects the reading of host calendars.
4
What systems are affected by CVE-2015-4209?
CVE-2015-4209 affects the Cisco WebEx Meeting Center software.
5
Can CVE-2015-4209 lead to data leaks?
Yes, CVE-2015-4209 can lead to data leaks by allowing attackers to access sensitive meeting information.