SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2014-3311

Heap-based buffer overflow in the file-sharing feature in WebEx Meetings Client in Cisco WebEx Meetings Server and WebEx Meeting Center allows remote attackers to execute arbitrary code via crafted data, aka Bug IDs CSCup62463 and CSCup58467.

MEDIUM 5.1EPSS 3.41%

Does this matter?

Lower severity and a low EPSS score (3.41%). Track it; it rarely justifies an emergency change on its own.

Description

Heap-based buffer overflow in the file-sharing feature in WebEx Meetings Client in Cisco WebEx Meetings Server and WebEx Meeting Center allows remote attackers to execute arbitrary code via crafted data, aka Bug IDs CSCup62463 and CSCup58467.

CVSS 2.0
5.1 MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
EPSS
3.41% probability · 88th percentile
CISA KEV
Not listed
Weakness
CWE-119
Affected
cisco/webex meeting center · cisco/webex meetings server
Source
psirt@cisco.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.