#VU51223 Improper access control in Cisco Webex Meetings - CVE-2021-1410
Published: March 4, 2021
Cisco Webex Meetings
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions in the distribution list feature. A remote authenticated attacker can send a specially crafted request and modify a distribution list that belongs to a user other than themselves.