Cisco.WebEx.Player.ATDL2006.DLL.Heap.Memory.Corruption

description-logoDescription

This indicates an attack attempt against a Heap Memory Corruption vulnerability in Cisco WebEx Player.
The vulnerability is caused due to insufficient validation of some values in WebEx Recording Format (WRF) files. A remote attacker can exploit this by sending a specially crafted WRF file. Successful exploitation may allow the attacker to execute arbitrary code on the target host in the context of the application.

affected-products-logoAffected Products

Cisco Systems WebEx Player Prior to T26 SP49 EP40
Cisco Systems WebEx Player Prior to T27 FR20
Cisco Systems WebEx Player Prior to T27 SP11 EP23
Cisco Systems WebEx Player Prior to T27 SP21 EP9
Cisco Systems WebEx Player Prior to T27 SP23
Cisco Systems WebEx Player Prior to T27 SP25 EP3
Cisco Systems WebEx Player Prior to T27 SP28

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.

recomended-action-logoRecommended Actions

Apply the latest patch from the vendor.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)