First published: Tue Jun 23 2015(Updated: )
Cross-site scripting (XSS) vulnerability in Cisco WebEx Meeting Center allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCur03806.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco WebEx Meeting Center |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-4210 has been classified as a medium severity vulnerability.
To fix CVE-2015-4210, ensure that you apply the latest security patches provided by Cisco for WebEx Meeting Center.
CVE-2015-4210 allows remote attackers to perform cross-site scripting attacks which can lead to data theft or session hijacking.
If your Cisco WebEx Meeting Center is updated to the latest version with security patches, the risk from CVE-2015-4210 is mitigated.
Yes, CVE-2015-4210 can be exploited through crafted URLs sent via email or other communication methods.