CVE-2018-0104 describes a critical arbitrary code execution vulnerability in the Cisco WebEx Network Recording Player when processing Advanced Recording Format (ARF) files. This flaw affects Cisco WebEx Business Suite, WebEx Meetings, WebEx Meetings Server, and the standalone ARF player. With a CVSS score of 9.6, this vulnerability is highly severe, requiring user interaction (e.g., opening a malicious ARF file) but allowing an unauthenticated attacker to achieve full system compromise. There is no public exploit code available, nor is there evidence of active exploitation or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:cisco:webex_business_suite:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:cisco:webex_meetings:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:cisco:webex_meetings_server:-:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:cisco:webex_network_recording_player:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.8 Bluesky, 0.5 Mastodon, and 1.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.1 Security Researcher mentions.