VYPR

Webex App

by Cisco Systems, Inc.

CVEs (6)

  • CVE-2025-20236HigApr 16, 2025
    risk 0.57cvss 8.8epss 0.01

    A vulnerability in the custom URL parser of Cisco Webex App could allow an unauthenticated, remote attacker to persuade a user to download arbitrary files, which could allow the attacker to execute arbitrary commands on the host of the targeted user. This vulnerability is due…

  • CVE-2024-20395MedJul 17, 2024
    risk 0.42cvss 6.4epss 0.00

    A vulnerability in the media retrieval functionality of Cisco Webex App could allow an unauthenticated, adjacent attacker to gain access to sensitive session information. This vulnerability is due to insecure transmission of requests to backend services when the app accesses…

  • CVE-2023-20104MedMar 3, 2023
    risk 0.40cvss 6.1epss 0.00

    A vulnerability in the file upload functionality of Cisco Webex App for Web could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to insufficient validation of user-supplied…

  • CVE-2024-20396MedJul 17, 2024
    risk 0.34cvss 5.3epss 0.00

    A vulnerability in the protocol handlers of Cisco Webex App could allow an unauthenticated, remote attacker to gain access to sensitive information. This vulnerability exists because the affected application does not safely handle file protocol handlers. An attacker could…

  • CVE-2026-20178MedJun 17, 2026
    risk 0.28cvss 4.3epss 0.00

    A vulnerability in the browser-based version of Cisco Webex App could have allowed an unauthenticated, remote attacker to redirect users to a malicious webpage. Cisco has addressed this vulnerability in the Cisco Webex App, and no customer action is needed. This vulnerability…

  • CVE-2022-20863MedSep 8, 2022
    risk 0.28cvss 4.3epss 0.01

    A vulnerability in the messaging interface of Cisco Webex App, formerly Webex Teams, could allow an unauthenticated, remote attacker to manipulate links or other content within the messaging interface. This vulnerability exists because the affected software does not properly…