CVE-2021-1544

A vulnerability in logging mechanisms of Cisco Webex Meetings client software could allow an authenticated, local attacker to gain access to sensitive information. This vulnerability is due to unsafe logging of application actions. An attacker could exploit this vulnerability by logging onto the local system and accessing files containing the logged details. A successful exploit could allow the attacker to gain access to sensitive information, including meeting data and recorded meeting transcriptions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cisco:webex_meetings:*:*:*:*:*:*:*:*

History

14 Jun 2021, 14:04

Type Values Removed Values Added
CPE cpe:2.3:a:cisco:webex_meetings:*:*:*:*:*:*:*:*
CWE CWE-497
References (CISCO) https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-8fpBnKOz - (CISCO) https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-webex-8fpBnKOz - Vendor Advisory
CVSS v2 : unknown
v3 : unknown
v2 : 2.1
v3 : 5.5

04 Jun 2021, 17:59

Type Values Removed Values Added
New CVE

Information

Published : 2021-06-04 17:15

Updated : 2023-12-10 13:55


NVD link : CVE-2021-1544

Mitre link : CVE-2021-1544

CVE.ORG link : CVE-2021-1544


JSON object : View

Products Affected

cisco

  • webex_meetings
CWE
CWE-497

Exposure of Sensitive System Information to an Unauthorized Control Sphere