First published: Wed Aug 19 2015(Updated: )
Open redirect vulnerability in Cisco WebEx Node for Media Convergence Server (MCS) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via crafted HTTP request parameters, aka Bug ID CSCuv32136.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco WebEx Node for MCS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-4297 has been classified with a moderate severity level due to its potential for phishing attacks.
To mitigate CVE-2015-4297, it is recommended to upgrade to a version of Cisco WebEx Node for MCS that contains the necessary security patches.
CVE-2015-4297 affects users of Cisco WebEx Node for Media Convergence Server (MCS).
Yes, CVE-2015-4297 can be exploited remotely by attackers using crafted HTTP request parameters.
CVE-2015-4297 can facilitate phishing attacks by redirecting users to arbitrary websites.