Cisco Webex Video Mesh vulnerabilities

3 known vulnerabilities affecting cisco/webex_video_mesh.

Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM2

Vulnerabilities

Page 1 of 1
CVE-2021-1500MEDIUMCVSS 6.1fixed in 2021.10.18.2439m2021-11-04
CVE-2021-1500 [MEDIUM] CWE-601 CVE-2021-1500: A vulnerability in the web-based management interface of Cisco Webex Video Mesh could allow an unaut A vulnerability in the web-based management interface of Cisco Webex Video Mesh could allow an unauthenticated, remote attacker to redirect a user to a malicious web page. This vulnerability is due to improper input validation of the URL parameters in an HTTP request. An attacker could exploit this vulnerability by persuading a user to click a crafted
nvd
CVE-2021-40115MEDIUMCVSS 6.1fixed in 2021.10.18.2439m2021-11-04
CVE-2021-40115 [MEDIUM] CWE-79 CVE-2021-40115: A vulnerability in Cisco Webex Video Mesh could allow an unauthenticated, remote attacker to conduct A vulnerability in Cisco Webex Video Mesh could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to insufficient validation of user-supplied input by the web-based management interface. An attacker could exploit this vulnerability by persuading a user t
nvd
CVE-2019-16005HIGHCVSS 7.2fixed in 2019.09.19.1956m2020-01-26
CVE-2019-16005 [HIGH] CWE-77 CVE-2019-16005: A vulnerability in the web-based management interface of Cisco Webex Video Mesh could allow an authe A vulnerability in the web-based management interface of Cisco Webex Video Mesh could allow an authenticated, remote attacker to execute arbitrary commands on the affected system. The vulnerability is due to improper validation of user-supplied input by the web-based management interface of the affected software. An attacker could exploit this vulnerab
nvd