VendorsCiscowebex_teamsall versions
Vulnerabilities

Cisco Webex Teams

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

19CVEs
CVE-2019-1636
Cisco Webex Teams URI Handler Insecure Library Loading Vulnerability
Published 2019-01-23 · Modified
9.3EPSS 0.469
CVE-2019-1939
Cisco Webex Teams Logging Feature Command Execution Vulnerability
Published 2019-09-05 · Modified
9.3EPSS 0.043
CVE-2018-0387
A vulnerability in Cisco Webex Teams (for Windows and macOS) could allow an unauthenticated, remote attacker to execute arbitrary code on the user's device, possibly with elevated privileges. The vulnerability occurs because Cisco Webex Teams does not properly sanitize input. An attacker could exploit the vulnerability by sending a user a malicious link and persuading the user to follow the link. A successful exploit could allow the attacker to execute arbitrary code on the user's system. Cisco Bug IDs: CSCvh66250.
Published 2018-07-18 · Modified
9.3EPSS 0.031
CVE-2025-20236
Cisco Webex App Client-Side Remote Code Execution Vulnerability
Published 2025-04-16 · Analyzed
8.8EPSS 0.010
CVE-2018-0436
Cisco Webex Teams Information Disclosure and Modification Vulnerability
Published 2018-10-05 · Modified
8.7EPSS 0.013
CVE-2020-3535
Cisco Webex Teams Client for Windows DLL Hijacking Vulnerability
Published 2020-10-08 · Modified
8.4EPSS 0.006
CVE-2021-1502
Cisco Webex Network Recording Player and Webex Player Memory Corruption Vulnerability
Published 2021-06-04 · Modified
7.8EPSS 0.011
CVE-2021-1536
Cisco Webex Meetings, Webex Network Recording Player, and Webex Teams DLL Injection Vulnerability
Published 2021-06-04 · Modified
7.8EPSS 0.003
CVE-2020-3155
Cisco Intelligent Proximity SSL Certificate Validation Vulnerability
Published 2020-03-04 · Modified
7.4EPSS 0.009
CVE-2019-1689
Cisco Webex Teams for iOS Arbitrary File Upload Vulnerability
Published 2019-02-25 · Modified
7.3EPSS 0.016
CVE-2024-20395
A vulnerability in the media retrieval functionality of Cisco Webex App could allow an unauthenticated, adjacent attacker to gain access to sensitive session information. This vulnerability is due to insecure transmission of requests to backend services when the app accesses embedded media, such as images. An attacker could exploit this vulnerability by sending a message with embedded media that is stored on a messaging server to a targeted user. If the attacker can observe transmitted traffic in a privileged network position, a successful exploit could allow the attacker to capture session token information from insecurely transmitted requests and possibly reuse the captured session information to take further actions as the targeted user.
Published 2024-07-17 · Analyzed
7.3EPSS 0.002
CVE-2020-3131
Cisco Webex Teams Adaptive Cards Denial of Service Vulnerability
Published 2020-01-26 · Modified
6.5EPSS 0.022
CVE-2024-20396
A vulnerability in the protocol handlers of Cisco Webex App could allow an unauthenticated, remote attacker to gain access to sensitive information. This vulnerability exists because the affected application does not safely handle file protocol handlers. An attacker could exploit this vulnerability by persuading a user to follow a link that is designed to cause the application to send requests. If the attacker can observe transmitted traffic in a privileged network position, a successful exploit could allow the attacker to capture sensitive information, including credential information, from the requests.
Published 2024-07-17 · Analyzed
6.5EPSS 0.004
CVE-2023-20104
Cisco Webex App for Web Cross-Site Scripting Vulnerability
Published 2023-03-03 · Modified
6.1EPSS 0.005
CVE-2020-26067
Cisco Webex Teams Web Interface Cross-Site Scripting Vulnerability
Published 2024-11-18 · Analyzed
5.4EPSS 0.008
CVE-2022-20863
Cisco Webex Meetings App Character Interface Manipulation Vulnerability
Published 2022-09-08 · Modified
5.3EPSS 0.009
CVE-2019-16001
Cisco Webex Teams for Windows DLL Hijacking Vulnerability
Published 2019-11-26 · Modified
5.3EPSS 0.004
CVE-2020-3541
Cisco Webex Meetings Client for Windows, Webex Meetings Desktop App, and Webex Teams Information Disclosure Vulnerability
Published 2020-09-04 · Modified
4.4EPSS 0.003
CVE-2021-1242
Cisco Webex Teams Shared File Manipulation Vulnerability
Published 2021-01-13 · Modified
4.3EPSS 0.014