Guest

Preview Tool

Cisco Bug: CSCuj81691 - Password passed in querystring to user

Last Modified

Jan 29, 2017

Products (1)

  • Cisco Webex Meetings Server

Known Affected Releases

1.5

Description (partial)

Symptoms:
A vulnerability in Cisco WebEx Meeting Server could allow an authenticated, remote attacker to acquire sensitive information.
 
The vulnerability is due to inclusion of sensitive information in URLs. An attacker could exploit this vulnerability by viewing application URL
requests that contain the sensitive information.
 
Conditions:
An affected device with default configuration
Bug details contain sensitive information and therefore require a Cisco.com account to be viewed.

Bug Details Include

  • Full Description (including symptoms, conditions and workarounds)
  • Status
  • Severity
  • Known Fixed Releases
  • Related Community Discussions
  • Number of Related Support Cases
Bug information is viewable for customers and partners who have a service contract. Registered users can view up to 200 bugs per month without a service contract.