CVE-2012-1336
published 2012-04-05CVE-2012-1336: Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 LD before…
PriorityP350critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
4.91%
91.1th percentile
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 LD before SP32 CP1 allows remote attackers to execute arbitrary code via a crafted WRF file, a different vulnerability than CVE-2012-1335 and CVE-2012-1337.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | webex_player | — | — |
| cisco | webex_recording_format_player | 27.11.0 – 27.11.26 | — |
| cisco | webex_recording_format_player | 27.21.0 – 27.21.10 | — |
| cisco | webex_recording_format_player | >= 27.25.0 < 27.25.10 | 27.25.10 |
| cisco | webex_recording_format_player | >= 27.32.0 < 27.32.1 | 27.32.1 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-r3xh-mqq6-wv5f: Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 L
ghsa_unreviewed·2022-05-14·CVSS 9.3
CVE-2012-1336 [CRITICAL] CWE-119 GHSA-r3xh-mqq6-wv5f: Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 L
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 LD before SP32 CP1 allows remote attackers to execute arbitrary code via a crafted WRF file, a different vulnerability than CVE-2012-1335 and CVE-2012-1337.
GHSA
GHSA-j3c4-rrx3-p55q: Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 L
ghsa_unreviewed·2022-05-14·CVSS 9.3
CVE-2012-1337 [CRITICAL] CWE-119 GHSA-j3c4-rrx3-p55q: Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 L
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 LD before SP32 CP1 allows remote attackers to execute arbitrary code via a crafted WRF file, a different vulnerability than CVE-2012-1335 and CVE-2012-1336.
GHSA
GHSA-2wh6-7m46-g596: Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 L
ghsa_unreviewed·2022-05-14·CVSS 9.3
CVE-2012-1335 [CRITICAL] CWE-119 GHSA-2wh6-7m46-g596: Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 L
Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 L through SP11 EP26, T27 LB through SP21 EP10, T27 LC before SP25 EP10, and T27 LD before SP32 CP1 allows remote attackers to execute arbitrary code via a crafted WRF file, a different vulnerability than CVE-2012-1336 and CVE-2012-1337.
Cisco
Buffer Overflow Vulnerabilities in the Cisco WebEx Player
vendor_cisco·2012-04-04
CVE-2012-1335 Buffer Overflow Vulnerabilities in the Cisco WebEx Player
Buffer Overflow Vulnerabilities in the Cisco WebEx Player
The Cisco WebEx Recording Format (WRF) player contains three buffer overflow vulnerabilities. In some cases, exploitation of the vulnerabilities could allow a remote attacker to execute arbitrary code on the system with the privileges of a targeted user.
The Cisco WebEx Players are applications that are used to play back WebEx meeting recordings that have been recorded on a WebEx meeting site or on the computer of an online meeting attendee. The players can be automatically installed when the user accesses a recording file that is hosted on a WebEx meeting site. The players can also be manually installed for offline playback after downloading the application from www.webex.com.
If the WRF player was automatically installed, it
Cisco
Buffer Overflow Vulnerabilities in the Cisco WebEx Player
vendor_cisco
CVE-2012-1336 Buffer Overflow Vulnerabilities in the Cisco WebEx Player
CVE-2012-1336: Buffer Overflow Vulnerabilities in the Cisco WebEx Player
The Cisco WebEx Recording Format (WRF) player contains three buffer overflow vulnerabilities. In some cases, exploitation of the vulnerabilities could allow a remote attacker to execute arbitrary code on the system with the privileges of a targeted user. The Cisco WebEx Players are applications that are used to play back WebEx meeting recordings that have been recorded on a WebEx meeting site or on the computer of an online meeting attendee. The players can be automatically installed when the user accesses a recording file that is hosted on a WebEx meeting site. The players can also be manually installed for offline playback after downloading the application from www.webex.com . If the WRF player was automatically ins
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2012-04-05
Published