CVE-2020-3116
published 2020-09-23CVE-2020-3116: A vulnerability in the way Cisco Webex applications process Universal Communications Format (UCF) files could allow an attacker to cause a denial of service…
medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
A vulnerability in the way Cisco Webex applications process Universal Communications Format (UCF) files could allow an attacker to cause a denial of service (DoS) condition. The vulnerability is due to insufficient validation of UCF media files. An attacker could exploit this vulnerability by sending a user a malicious UCF file through a link or email attachment and persuading the user to open the file with the affected software on the local system. A successful exploit would cause the application to quit unexpectedly.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_webex_event_center | — | — |
| cisco | webex_centers | — | — |
| cisco | webex_meetings_online | — | — |
| cisco | webex_meetings_server | — | — |