CVE-2018-0457: Cisco Webex Player WRF Files Denial of Service Vulnerability
A vulnerability in the Cisco Webex Player for Webex Recording Format (WRF) files could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. An attacker could exploit this vulnerability by sending a user a link or email attachment with a malicious WRF file and persuading the user to open the file in the Cisco Webex Player. A successful exploit could cause the affected player to crash, resulting in a DoS condition. For more information about this vulnerability, see the Details section of this security advisory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-0457?
CVE-2018-0457 is classified as a medium severity vulnerability.
How can CVE-2018-0457 be exploited?
CVE-2018-0457 can be exploited by sending a user a link or email attachment containing a malicious Webex Recording Format (WRF) file.
Which software versions are affected by CVE-2018-0457?
CVE-2018-0457 affects Cisco Webex Meetings versions t31 and t32.
How do I fix CVE-2018-0457?
To mitigate CVE-2018-0457, it is recommended to update Cisco Webex Meetings to the latest version.
What type of vulnerability is CVE-2018-0457?
CVE-2018-0457 is a denial of service (DoS) vulnerability related to the Cisco Webex Player.