Unrated severityNVD Advisory· Published Aug 1, 2014· Updated Jun 17, 2026
CVE-2014-3302
CVE-2014-3302
Description
user.php in Cisco WebEx Meetings Server 1.5(.1.131) and earlier does not properly implement the token timer for authenticated encryption, which allows remote attackers to obtain sensitive information via a crafted URL, aka Bug ID CSCuj81708.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:cisco:webex_meetings_server:*:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:cisco:webex_meetings_server:*:*:*:*:*:*:*:*range: <=1.5\(.1.131\)
- cpe:2.3:a:cisco:webex_meetings_server:1.5:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:webex_meetings_server:1.5\(.1.6\):*:*:*:*:*:*:*
- (no CPE)range: <=1.5.1.131
Patches
Vulnerability mechanics
References
6- tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3302nvdVendor Advisory
- tools.cisco.com/security/center/viewAlert.xnvdVendor Advisory
- www.securityfocus.com/bid/68904nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1030646nvdThird Party AdvisoryVDB Entry
- secunia.com/advisories/58624nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/94892nvd
News mentions
0No linked articles in our index yet.