VDB

CVE-2018-0103

CVE-2018-0103 PUBLISHED CVSS 9.300000190734863 CRITICAL

A Buffer Overflow vulnerability in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) files could allow a local attacker to execute arbitrary code on the system of a user. The attacker could exploit this vulnerability by sending the user a link or email attachment with a malicious ARF file and persuading the user to follow the link or launch the file. Successful exploitation could allow the attacker to execute arbitrary code on the user's system. This vulnerability affects Cisco WebEx Business Suite meeting sites, Cisco WebEx Meetings sites, Cisco WebEx Meetings Server, and Cisco WebEx ARF players. Cisco Bug IDs: CSCvg78835, CSCvg78837, CSCvg78839.

EPSS 0.38% · 59.9th percentile

Risk Scores

CVSS 2.0
9.300000190734863
EPSS Score
0.38%
59.9th percentile

Affected Products

VendorProductVersions
ciscowebex_business_suite
n/aCisco WebEx Network Recording PlayerCisco WebEx Network Recording Player
ciscowebex_meetings
ciscowebex_network_recording_player
ciscowebex_meetings_server

Timeline

  • Jan 3, 2018 CVE Published
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Aug 24, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 28, 2022 EPSS Score
  • May 2, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
  • Jan 8, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›