VendorsCiscowebex_meetingsany version
Vulnerabilities

Cisco Webex Meetings any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

50CVEs
CVE-2020-3361
Cisco Webex Meetings and Cisco Webex Meetings Server Token Handling Unauthorized Access Vulnerability
Published 2020-06-18 · Modified
9.8EPSS 0.024
CVE-2018-0104
A vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow a remote attacker to execute arbitrary code on the system of a targeted user. The attacker could exploit this vulnerability by sending the user a link or email attachment with a malicious ARF file and persuading the user to follow the link or launch the file. Successful exploitation could allow the attacker to execute arbitrary code on the user's system. This vulnerability affects Cisco WebEx Business Suite meeting sites, Cisco WebEx Meetings sites, Cisco WebEx Meetings Server, and Cisco WebEx ARF players. Cisco Bug IDs: CSCvg78853, CSCvg78856, CSCvg78857.
Published 2018-01-04 · Modified
9.6EPSS 0.038
CVE-2018-0264
A vulnerability in the Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow an unauthenticated, remote attacker to execute arbitrary code on the system of a targeted user. An attacker could exploit this vulnerability by sending the user a link or email attachment with a malicious ARF file and persuading the user to follow the link or open the file. Successful exploitation could allow the attacker to execute arbitrary code on the user's system. This vulnerability affects Cisco WebEx Business Suite meeting sites, Cisco WebEx Meetings sites, Cisco WebEx Meetings Server, and Cisco WebEx ARF players. The following client builds of Cisco WebEx Business Suite (WBS31 and WBS32), Cisco WebEx Meetings, and Cisco WebEx Meetings Server are affected: Cisco WebEx Business Suite (WBS31) client builds prior to T31.23.4, Cisco WebEx Business Suite (WBS32) client builds prior to T32.12, Cisco WebEx Meetings with client builds prior to T32.12, Cisco WebEx Meeting Server builds prior to 3.0 Patch 1. Cisco Bug IDs: CSCvh85410, CSCvh85430, CSCvh85440, CSCvh85442, CSCvh85453, CSCvh85457.
Published 2018-05-02 · Modified
9.6EPSS 0.031
CVE-2020-3342
Cisco Webex Meetings Desktop App for Mac Update Feature Code Execution Vulnerability
Published 2020-06-18 · Modified
9.3EPSS 0.038
CVE-2020-3573
Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulnerabilities
Published 2020-11-06 · Modified
9.3EPSS 0.028
CVE-2020-3603
Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulnerabilities
Published 2020-11-06 · Modified
9.3EPSS 0.026
CVE-2020-3604
Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulnerabilities
Published 2020-11-06 · Modified
9.3EPSS 0.026
CVE-2020-3127
Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulnerabilities
Published 2020-03-04 · Modified
9.3EPSS 0.024
CVE-2020-3194
Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulnerability
Published 2020-04-15 · Modified
9.3EPSS 0.020
CVE-2020-3128
Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulnerabilities
Published 2020-03-04 · Modified
9.3EPSS 0.019
CVE-2019-15283
Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulnerabilities
Published 2020-09-23 · Modified
9.3EPSS 0.018
CVE-2019-15285
Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulnerabilities
Published 2020-09-23 · Modified
9.3EPSS 0.018
CVE-2019-15287
Cisco Webex Network Recording Player and Cisco Webex Player Arbitrary Code Execution Vulnerabilities
Published 2020-09-23 · Modified
9.3EPSS 0.018
CVE-2018-0103
A Buffer Overflow vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow a local attacker to execute arbitrary code on the system of a user. The attacker could exploit this vulnerability by sending the user a link or email attachment with a malicious ARF file and persuading the user to follow the link or launch the file. Successful exploitation could allow the attacker to execute arbitrary code on the user's system. This vulnerability affects Cisco WebEx Business Suite meeting sites, Cisco WebEx Meetings sites, Cisco WebEx Meetings Server, and Cisco WebEx ARF players. Cisco Bug IDs: CSCvg78835, CSCvg78837, CSCvg78839.
Published 2018-01-04 · Modified
9.3EPSS 0.017
CVE-2019-1674
Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools Update Service Command Injection Vulnerability
Published 2019-02-28 · Modified
9.01 PoCEPSS 0.098
CVE-2020-3588
Cisco Webex Meetings Desktop App Arbitrary Code Execution Vulnerability
Published 2020-11-06 · Modified
7.8EPSS 0.004
CVE-2020-3263
Cisco Webex Meetings Desktop App URL Filtering Arbitrary Program Execution Vulnerability
Published 2020-06-18 · Modified
7.6EPSS 0.041
CVE-2020-3155
Cisco Intelligent Proximity SSL Certificate Validation Vulnerability
Published 2020-03-04 · Modified
7.4EPSS 0.009
CVE-2021-34743
Cisco Webex Software Application Authorization Bypass Vulnerability
Published 2021-10-21 · Modified
7.1EPSS 0.005
CVE-2020-3440
Cisco Webex Meetings Desktop App for Windows Arbitrary File Overwrite Vulnerability
Published 2020-08-26 · Modified
6.5EPSS 0.026
CVE-2019-15960
Cisco Webex Network Recording Admin Page Privilege Escalation Vulnerability
Published 2019-11-26 · Modified
6.5EPSS 0.011
CVE-2022-20852
Cisco Webex Meetings Web Interface Vulnerabilities
Published 2022-08-10 · Modified
6.5EPSS 0.005
CVE-2023-20134
Cisco Webex Meetings Web UI Vulnerabilities
Published 2023-04-05 · Modified
6.5EPSS 0.005
CVE-2022-20778
Cisco Webex Meetings Cross-Site Scripting Vulnerability
Published 2022-04-21 · Modified
6.1EPSS 0.008
CVE-2025-20247
A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is due to improper filtering of user-supplied input. An attacker could exploit this vulnerability by persuading a user to follow a malicious link. A successful exploit could allow the attacker to conduct a cross-site scripting attack against the targeted user.
Published 2025-05-21 · Analyzed
6.1EPSS 0.003
CVE-2025-20250
A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is due to improper filtering of user-supplied input. An attacker could exploit this vulnerability by persuading a user to follow a malicious link. A successful exploit could allow the attacker to conduct a cross-site scripting attack against the targeted user.
Published 2025-05-21 · Analyzed
6.1EPSS 0.003
CVE-2025-20246
A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is due to improper filtering of user-supplied input. An attacker could exploit this vulnerability by persuading a user to follow a malicious link. A successful exploit could allow the attacker to conduct a cross-site scripting attack against the targeted user.
Published 2025-05-21 · Analyzed
6.1EPSS 0.003
CVE-2025-20291
A vulnerability in Cisco Webex Meetings could have allowed an unauthenticated, remote attacker to redirect a targeted Webex Meetings user to an untrusted website. Cisco has addressed this vulnerability in the Cisco Webex Meetings service, and no customer action is needed. This vulnerability existed because of insufficient validation of URLs that were included in a meeting-join URL. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by including a URL to a website of their choosing in a specific value of a Cisco Webex Meetings join URL. A successful exploit could have allowed the attacker to redirect a targeted user to a website that was controlled by the attacker, possibly making the user more likely to believe the website was trusted by Webex and perform additional actions as part of phishing attacks.
Published 2025-09-03 · Analyzed
6.1EPSS 0.002
CVE-2019-1948
Cisco Webex Meetings Mobile (iOS) SSL Certificate Validation Vulnerability
Published 2019-08-21 · Modified
5.9EPSS 0.009
CVE-2021-1311
Cisco Webex Meetings and Cisco Webex Meetings Server Host Key Brute Forcing Vulnerability
Published 2021-01-13 · Modified
5.5EPSS 0.013
CVE-2021-1372
Cisco Webex Meetings Desktop App and Webex Productivity Tools for Windows Shared Memory Information Disclosure Vulnerability
Published 2021-02-17 · Modified
5.5EPSS 0.004
CVE-2020-3347
Cisco Webex Meetings Desktop App for Windows Shared Memory Information Disclosure Vulnerability
Published 2020-06-18 · Modified
5.5EPSS 0.004
CVE-2021-1544
Cisco Webex Meetings Client Software Logging Information Disclosure Vulnerability
Published 2021-06-04 · Modified
5.5EPSS 0.002
CVE-2022-20820
Cisco Webex Meetings Web Interface Vulnerabilities
Published 2022-08-10 · Modified
5.4EPSS 0.005
CVE-2023-20132
Cisco Webex Meetings Web UI Vulnerabilities
Published 2023-04-05 · Modified
5.4EPSS 0.004
CVE-2025-20328
A vulnerability in the user profile component of Cisco Webex Meetings could have allowed an authenticated, remote attacker with low privileges to conduct a cross-site scripting (XSS) attack against a user of the web-based interface. Cisco has addressed this vulnerability in the Cisco Webex Meetings service, and no customer action is needed. This vulnerability existed because of insufficient validation of user-supplied input to the user profile component of Cisco Webex Meetings. Prior to this vulnerability being addressed, an attacker could have exploited this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could have allowed the attacker to conduct an XSS attack against the targeted user.
Published 2025-09-03 · Analyzed
5.4EPSS 0.002
CVE-2020-3441
Cisco Webex Meetings and Cisco Webex Meetings Server Information Disclosure Vulnerability
Published 2020-11-18 · Modified
5.3EPSS 0.016
CVE-2021-40128
Cisco Webex Meetings Email Content Injection Vulnerability
Published 2021-11-04 · Modified
5.3EPSS 0.010
CVE-2019-16001
Cisco Webex Teams for Windows DLL Hijacking Vulnerability
Published 2019-11-26 · Modified
5.3EPSS 0.004
CVE-2019-1677
Cisco Webex Meetings for Android Cross-Site Scripting Vulnerability
Published 2019-02-07 · Modified
5.0EPSS 0.004
1 / 2Next →