VYPR

Meeting Server

by Cisco Systems, Inc.

CVEs (31)

  • CVE-2021-40122MedOct 21, 2021
    risk 0.38cvss 5.9epss 0.01

    A vulnerability in an API of the Call Bridge feature of Cisco Meeting Server could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to improper handling of large series of message requests. An attacker could…

  • CVE-2017-12311MedNov 16, 2017
    risk 0.38cvss 5.8epss 0.02

    A vulnerability in the H.264 decoder function of Cisco Meeting Server could allow an unauthenticated, remote attacker to cause a Cisco Meeting Server media process to restart unexpectedly when it receives an illegal H.264 frame. The vulnerability is triggered by an H.264 frame…

  • CVE-2018-0359MedJun 21, 2018
    risk 0.36cvss 5.5epss 0.00

    A vulnerability in the session identification management functionality of the web-based management interface for Cisco Meeting Server could allow an unauthenticated, local attacker to hijack a valid user session identifier, aka Session Fixation. The vulnerability exists because…

  • CVE-2023-20255MedNov 1, 2023
    risk 0.35cvss 5.3epss 0.01

    A vulnerability in an API of the Web Bridge feature of Cisco Meeting Server could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. This vulnerability is due to insufficient validation of HTTP requests. An attacker could exploit this…

  • CVE-2020-3197MedJul 16, 2020
    risk 0.35cvss 5.3epss 0.01

    A vulnerability in the API subsystem of Cisco Meetings App could allow an unauthenticated, remote attacker to retain and reuse the Traversal Using Relay NAT (TURN) server credentials that are configured in an affected system. The vulnerability is due to insufficient protection…

  • CVE-2020-3160MedFeb 19, 2020
    risk 0.35cvss 5.3epss 0.01

    A vulnerability in the Extensible Messaging and Presence Protocol (XMPP) feature of Cisco Meeting Server software could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition for users of XMPP conferencing applications. Other applications and…

  • CVE-2018-15446MedNov 8, 2018
    risk 0.35cvss 5.3epss 0.02

    A vulnerability in Cisco Meeting Server could allow an unauthenticated, remote attacker to gain access to sensitive information. The vulnerability is due to improper protections on data that is returned from user meeting requests when the Guest access via ID and passcode option…

  • CVE-2017-12264MedOct 5, 2017
    risk 0.35cvss 5.3epss 0.02

    A vulnerability in the Web Admin Interface of Cisco Meeting Server could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition. The vulnerability is due to insufficient bound checks performed by the affected software. An attacker could exploit…

  • CVE-2019-1794MedApr 18, 2019
    risk 0.33cvss 5.1epss 0.00

    A vulnerability in the search path processing of Cisco Directory Connector could allow an authenticated, local attacker to load a binary of their choosing. The vulnerability is due to uncontrolled search path elements. An attacker could exploit this vulnerability by placing a…

  • CVE-2021-1524MedJun 16, 2021
    risk 0.28cvss 4.3epss 0.01

    A vulnerability in the API of Cisco Meeting Server could allow an authenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This vulnerability exists because requests that are sent to the API are not properly validated. An attacker could…

  • CVE-2019-1678MedFeb 7, 2019
    risk 0.28cvss 4.3epss 0.01

    A vulnerability in Cisco Meeting Server could allow an authenticated, remote attacker to cause a partial denial of service (DoS) to Cisco Meetings application users who are paired with a Session Initiation Protocol (SIP) endpoint. The vulnerability is due to improper validation…

Page 2 of 2