CVE-2021-1536 is a DLL injection vulnerability affecting Cisco Webex Meetings Desktop App for Windows, Webex Meetings Server, Webex Network Recording Player, and Webex Teams for Windows. An authenticated, local attacker can exploit this by inserting a malicious configuration file, leading to arbitrary code execution with elevated privileges. While rated High severity (CVSS 7.8), there is no known active exploitation, public exploit code, or significant community discussion, suggesting a low current threat level.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:cisco:webex_meetings_desktop:-:*:*:*:*:windows:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:cisco:webex_meetings_online:-:*:*:*:*:*:*:* | ||
4.0CPE matchmatch criteria | cpe:2.3:a:cisco:webex_meetings_server:4.0:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:cisco:webex_network_recording_player:-:*:*:*:*:windows:*:* | ||
3.0.15485.0CPE matchmatch criteria | cpe:2.3:a:cisco:webex_teams:3.0.15485.0:*:*:*:*:windows:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.