CVE-2017-12284 describes a medium-severity vulnerability in the web interface of Cisco Jabber for Windows Client. This flaw, caused by insufficient input validation, allows an authenticated, local attacker to retrieve sensitive user profile information. A successful exploit could lead to the disclosure of confidential data, though it does not impact integrity or availability. There is no known public exploit code, active exploitation, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11.8\(.4\)CPE matchmatch criteria | cpe:2.3:a:cisco:jabber:11.8\(.4\):*:*:*:*:windows:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.