9.3
CVE-2013-1169
- EPSS 0.43%
- Veröffentlicht 11.04.2013 10:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
- Quelle psirt@cisco.com
- CVE-Watchlists
- Unerledigt
Cisco Unified MeetingPlace Web Conferencing Server 7.x before 7.1MR1 Patch 2, 8.0 before 8.0MR1 Patch 2, and 8.5 before 8.5MR3 Patch 1, when the Remember Me option is used, does not properly verify cookies, which allows remote attackers to impersonate users via a crafted login request, aka Bug ID CSCuc64846.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Cisco ≫ Unified Meetingplace Web Conferencing Server Version7.1
Cisco ≫ Unified Meetingplace Web Conferencing Server Version8.0
Cisco ≫ Unified Meetingplace Web Conferencing Server Version8.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.43% | 0.599 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|