CVE-2025-20236
- EPSS 0.1%
- Published 16.04.2025 16:16:23
- Last modified 01.08.2025 21:03:51
A vulnerability in the custom URL parser of Cisco Webex App could allow an unauthenticated, remote attacker to persuade a user to download arbitrary files, which could allow the attacker to execute arbitrary commands on the host of the targeted user....
CVE-2020-26067
- EPSS 9.32%
- Published 18.11.2024 17:15:09
- Last modified 01.08.2025 20:34:27
A vulnerability in the web-based interface of Cisco Webex Teams could allow an authenticated, remote attacker to conduct cross-site scripting attacks. The vulnerability is due to improper validation of usernames. An attacker could exploit this ...
CVE-2024-20396
- EPSS 0.66%
- Published 17.07.2024 17:15:13
- Last modified 31.07.2025 16:07:49
A vulnerability in the protocol handlers of Cisco Webex App could allow an unauthenticated, remote attacker to gain access to sensitive information. This vulnerability exists because the affected application does not safely handle file protocol ha...
CVE-2024-20395
- EPSS 0.15%
- Published 17.07.2024 17:15:12
- Last modified 31.07.2025 16:04:57
A vulnerability in the media retrieval functionality of Cisco Webex App could allow an unauthenticated, adjacent attacker to gain access to sensitive session information. This vulnerability is due to insecure transmission of requests to backend se...
CVE-2023-20104
- EPSS 0.12%
- Published 03.03.2023 16:15:10
- Last modified 21.11.2024 07:40:33
A vulnerability in the file upload functionality of Cisco Webex App for Web could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to insufficient vali...
CVE-2022-20863
- EPSS 0.33%
- Published 08.09.2022 13:15:08
- Last modified 21.11.2024 06:43:42
A vulnerability in the messaging interface of Cisco Webex App, formerly Webex Teams, could allow an unauthenticated, remote attacker to manipulate links or other content within the messaging interface. This vulnerability exists because the affected s...
CVE-2021-1536
- EPSS 0.07%
- Published 04.06.2021 17:15:09
- Last modified 21.11.2024 05:44:34
A vulnerability in Cisco Webex Meetings Desktop App for Windows, Cisco Webex Meetings Server, Cisco Webex Network Recording Player for Windows, and Cisco Webex Teams for Windows could allow an authenticated, local attacker to perform a DLL injection ...
CVE-2021-1502
- EPSS 0.45%
- Published 04.06.2021 17:15:08
- Last modified 21.11.2024 05:44:29
A vulnerability in Cisco Webex Network Recording Player for Windows and MacOS and Cisco Webex Player for Windows and MacOS could allow an attacker to execute arbitrary code on an affected system. The vulnerability is due to insufficient validation of...
CVE-2021-1242
- EPSS 0.37%
- Published 13.01.2021 22:15:20
- Last modified 21.11.2024 05:43:54
A vulnerability in Cisco Webex Teams could allow an unauthenticated, remote attacker to manipulate file names within the messaging interface. The vulnerability exists because the affected software mishandles character rendering. An attacker could exp...
CVE-2020-3535
- EPSS 0.05%
- Published 08.10.2020 05:15:14
- Last modified 21.11.2024 05:31:16
A vulnerability in the loading mechanism of specific DLLs in the Cisco Webex Teams client for Windows could allow an authenticated, local attacker to load a malicious library. To exploit this vulnerability, the attacker needs valid credentials on the...