First published: Sun Feb 07 2016(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in Cisco WebEx Meetings Server 2.5.1.5 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID CSCuy01843.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Webex Meetings Server | =2.5.1.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1309 has been assigned a medium severity level due to its potential for remote cross-site scripting attacks.
To fix CVE-2016-1309, upgrade your Cisco WebEx Meetings Server to the latest version provided by Cisco.
CVE-2016-1309 describes multiple cross-site scripting (XSS) vulnerabilities that allow injection of arbitrary web scripts.
CVE-2016-1309 specifically affects Cisco WebEx Meetings Server version 2.5.1.5.
Yes, CVE-2016-1309 can be exploited remotely by attackers to execute scripts in the context of another user.