Wednesday, May 2, 2018

Cisco WebEx Recording Format Player Information Disclosure Vulnerability

This vulnerability affects Cisco WebEx Business Suite meeting sites, Cisco WebEx Meetings sites, and Cisco WebEx WRF players. For information about affected software releases, consult the Cisco bug ID(s) at the top of this advisory.

To determine whether a Cisco WebEx Meetings site is running an affected version of the WebEx client build, users can log in to their Cisco WebEx Meetings site and go to Support > Downloads. The version of the WebEx client build will be displayed on the right side of the page under About Meeting Center.

Alternatively, version information for the Cisco WebEx Meetings client can be accessed within the Cisco WebEx Meetings client. Version information for the Cisco WebEx Meetings client on Windows and Linux platforms can be viewed by choosing Help > About Cisco WebEx Meeting Center. Version information for the Cisco WebEx Meetings client on Mac platforms can be viewed by choosing Meeting Center > About Cisco WebEx Meeting Center.

The Cisco WebEx software updates are cumulative in client builds. For example, if client build 30.32.16 is fixed, build 30.32.17 will contain updated software. Cisco WebEx site administrators have access to secondary version nomenclature, for example, T30 SP32 EP 16, which shows that the server is running client build 30.32.16.

Note: Customers who do not receive automatic software updates may be running versions of Cisco WebEx that have reached end of software maintenance and should contact customer support.

Only products listed in the Vulnerable Products section of this advisory are known to be affected by this vulnerability.



from Cisco Security Advisory https://ift.tt/2w1WKxe

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.