CVE-2013-1245
Last modified
CVE-2013-1245 is a vulnerability of currently unknown severity. The user-management page in Cisco WebEx Social relies on client-side validation of values in the Screen Name, First Name, Middle Name, Last Name, Email Address, and Job Title fields, which allows remote authenticated users to bypass intended access restrictions via crafted requests, aka Bug ID CSCue67190.. EPSS estimates a 1.00% chance of exploitation in the next 30 days.
Description
The user-management page in Cisco WebEx Social relies on client-side validation of values in the Screen Name, First Name, Middle Name, Last Name, Email Address, and Job Title fields, which allows remote authenticated users to bypass intended access restrictions via crafted requests, aka Bug ID CSCue67190.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Cisco | Webex Social | All versions |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-1245?
How severe is CVE-2013-1245?
How do I fix CVE-2013-1245?
Are you affected by CVE-2013-1245?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
