CVE-2018-0457
Cisco Webex Player WRF Files Denial of Service Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
A vulnerability in the Cisco Webex Player for Webex Recording Format (WRF) files could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. An attacker could exploit this vulnerability by sending a user a link or email attachment with a malicious WRF file and persuading the user to open the file in the Cisco Webex Player. A successful exploit could cause the affected player to crash, resulting in a DoS condition. For more information about this vulnerability, see the Details section of this security advisory.
Una vulnerabilidad en los archivos de Cisco Webex Player for Webex Recording Format (WRF) podría permitir que un atacante remoto no autenticado provoque una condición de denegación de servicio (DoS). Un atacante podría explotar esta vulnerabilidad mediante el envío a un usuario de un enlace o adjunto de email con un archivo WRF malicioso y persuadiéndolo para que abra el archivo en Cisco Webex Player. Su explotación con éxito podría dar lugar a que el reproductor afectado se cierre inesperadamente, provocando una condición de denegación de servicio (DoS). Para más información sobre esta vulnerabilidad, consulte la sección de detalles de este aviso de seguridad.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2017-11-27 CVE Reserved
- 2018-10-05 CVE Published
- 2024-09-17 CVE Updated
- 2024-10-20 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-399: Resource Management Errors
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/bid/105279 | Third Party Advisory | |
http://www.securitytracker.com/id/1041679 | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Webex Meetings Online Search vendor "Cisco" for product "Webex Meetings Online" | t31 Search vendor "Cisco" for product "Webex Meetings Online" and version "t31" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Webex Meetings Online Search vendor "Cisco" for product "Webex Meetings Online" | t32 Search vendor "Cisco" for product "Webex Meetings Online" and version "t32" | - |
Affected
|