CVE-2012-3940

CWE-119Buffer Overflow4 documents4 sources
Severity
9.3CRITICAL
EPSS
8.2%
top 7.80%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 25
Latest updateMay 17

Description

Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCtz72958.

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9r64-93vf-p94q: Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T282022-05-17
CVEList
CVE-2012-3940: Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T282012-10-25

📋Vendor Advisories

1
Cisco
Multiple Vulnerabilities in the Cisco WebEx Recording Format Player2012-10-10
CVE-2012-3940 (CRITICAL CVSS 9.3) | Buffer overflow in the Cisco WebEx | cvebase.io