Description

A vulnerability in the distribution list feature of Cisco Webex Meetings could allow an authenticated, remote attacker to modify a distribution list that belongs to another user of their organization. The vulnerability is due to insufficient authorization enforcement for requests to update distribution lists. An attacker could exploit this vulnerability by sending a crafted request to the Webex Meetings interface to modify an existing distribution list. A successful exploit could allow the attacker to modify a distribution list that belongs to a user other than themselves.Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.

INFO

Published Date :

2024-11-18T15:38:58.195Z

Last Modified :

2024-11-18T15:58:01.907Z

Source :

cisco
AFFECTED PRODUCTS

The following products are affected by CVE-2021-1410 vulnerability.

Vendors Products
Cisco
  • Webex Meetings
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2021-1410.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact