user.php in Cisco WebEx Meetings Server 1.5(.1.131) and earlier does not properly implement the token timer for authenticated encryption, which allows remote attackers to obtain sensitive information via a crafted URL, aka Bug ID CSCuj81708.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Webex_meetings_server | Cisco | * | 1.5(.1.131) (including) |
Webex_meetings_server | Cisco | 1.5 (including) | 1.5 (including) |
Webex_meetings_server | Cisco | 1.5(.1.6) (including) | 1.5(.1.6) (including) |