Improper input validation in Cisco WebEx Meetings Player - CVE-2018-0287
Published: May 7, 2018
Cisco WebEx Meetings Player
Detailed vulnerability description
The vulnerability allows a remote unauthenticated attacker to execute arbitrary code on the target system.
The weakness exists due to a design flaw. A remote attacker can trick the victim into opening an email attachment or link to a specially crafted ARF file and execute arbitrary code.
Successful exploitation of the vulnerability may result in system compromise.