First published: Fri Jul 15 2016(Updated: )
Cisco WebEx Meetings Server 2.6 allows remote authenticated users to conduct command-injection attacks via vectors related to an upload's file type, aka Bug ID CSCuy92715.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Webex Meetings Server | =2.6.0 | |
Cisco Webex Meetings Server | =2.6.1.39 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1450 is classified as a medium severity vulnerability impacting Cisco WebEx Meetings Server.
To fix CVE-2016-1450, upgrade to Cisco WebEx Meetings Server version 2.6.1.39 or later.
CVE-2016-1450 is associated with command injection attacks conducted by remote authenticated users.
CVE-2016-1450 affects Cisco WebEx Meetings Server versions 2.6.0 and 2.6.1.39.
CVE-2016-1450 can be exploited by remote authenticated users of Cisco WebEx Meetings Server.