CVE-2021-1467

Published on: 04/08/2021 12:00:00 AM UTC

Last Modified on: 04/08/2021 11:26:00 AM UTC

CVE-2021-1467 - advisory for cisco-sa-webex-andro-iac-f3UR8frB

Source: Mitre
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

Certain versions of Webex Meetings from Cisco contain the following vulnerability:

A vulnerability in Cisco Webex Meetings for Android could allow an authenticated, remote attacker to modify the avatar of another user. This vulnerability is due to improper authorization checks. An attacker could exploit this vulnerability by sending a crafted request to the Cisco Webex Meetings client of a targeted user of a meeting in which they are both participants. A successful exploit could allow the attacker to modify the avatar of the targeted user.

  • CVE-2021-1467 has been assigned by [email protected] to track the vulnerability
  • The Cisco Product Security Incident Response Team (PSIRT) is not aware of any public announcements or malicious use of the vulnerability that is described in this advisory.
  • Affected Vendor/Software: Cisco - Cisco Webex Meetings version n/a

CVE References

Description Tags Link
Cisco Webex Meetings for Android Avatar Modification Vulnerability tools.cisco.com
text/html
URL Logo CISCO 20210407 Cisco Webex Meetings for Android Avatar Modification Vulnerability

Known Affected Configurations (CPE V2.3)

Type Vendor Product Version Update Edition Language
ApplicationCiscoWebex MeetingsAllAllAllAll
  • cpe:2.3:a:cisco:webex_meetings:*:*:*:*:*:android:*:*:

Social Mentions

Source Title Posted (UTC)
Twitter Icon @CVEreport CVE-2021-1467 : A vulnerability in Cisco Webex Meetings for Android could allow an authenticated, remote attacker… twitter.com/i/web/status/1… 2021-04-08 04:22:11