#VU50776 Information disclosure in Cisco Webex Meetings Desktop App and Cisco WebEx Meetings Server - CVE-2021-1372
Published: February 17, 2021
Cisco Webex Meetings Desktop App
Cisco WebEx Meetings Server
Cisco Systems, Inc
Description
The vulnerability allows a local user to gain access to potentially sensitive information.
The vulnerability exists due to insecure usage of shared memory. A local user with permissions to view system memory can run a specially crafted program to read shared memory of the affected application and obtain sernames, meeting information, or authentication tokens.