CVE-2017-12372
A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.98%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
A "Cisco WebEx Network Recording Player Remote Code Execution Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A remote attacker could exploit this by providing a user with a malicious ARF or WRF file via email or URL and convincing the user to launch the file. Exploitation of this could cause an affected player to crash and, in some cases, could allow arbitrary code execution on the system of a targeted user. Cisco Bug IDs: CSCvf57234, CSCvg54868, CSCvg54870.
- CVSS 3.0
- 9.6 CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
- EPSS
- 2.98% probability · 87th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-119
- Affected
- cisco/webex meetings server · cisco/webex meetings
- Source
- psirt@cisco.com
References
- http://www.securityfocus.com/bid/102017Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1039895Third Party Advisory, VDB Entry
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20171129-webex-playersVendor Advisory
- http://www.securityfocus.com/bid/102017Third Party Advisory, VDB Entry
- http://www.securitytracker.com/id/1039895Third Party Advisory, VDB Entry
- https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20171129-webex-playersVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.