Information disclosure in Cisco Webex Meetings and Cisco WebEx Meetings Server - CVE-2020-3441
Published: November 18, 2020 / Updated: November 19, 2020
Cisco Webex Meetings
Cisco WebEx Meetings Server
Detailed vulnerability description
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to insufficient protection of sensitive participant information. A remote attacker can browse the Webex roster to gather information about other Webex participants, such as email address and IP address, while waiting in the lobby.