QID 375644

Date Published: 2021-06-23

QID 375644: Cisco Jabber Desktop multiple Vulnerabilities(cisco-sa-jabber-GuC5mLwG)

Multiple vulnerabilities in Cisco Jabber for Windows, Cisco Jabber for Mac, and Cisco Jabber for mobile platforms
could allow an attacker to access sensitive information or cause a denial of service (DoS) condition.

Affected Products
Cisco Jabber releases earlier than Release 14.0.1.
Note: Potential detection as Cisco Jabber in Phone-only mode or Team Messaging mode are not vulnerable and this cannot be confirmed.

QID Detection Logic (authenticated):
This QID looks for the vulnerable version of "CiscoJabber.exe".

Successful exploitation would allow attacker to access sensitive information or cause a denial of service (DoS) condition.

  • CVSS V3 rated as High - 6.5 severity.
  • CVSS V2 rated as Medium - 4 severity.
  • Solution

    Customers are advised to refer to cisco-sa-jabber-GuC5mLwG for more information.

    CVEs related to QID 375644

    Software Advisories
    Advisory ID Software Component Link
    cisco-sa-jabber-GuC5mLwG URL Logo tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-jabber-GuC5mLwG