CVE-2013-6965
Cisco WebEx Training Center - Unauthenticated Audio Conference Access via Registration URL
Title source: llmDescription
The registration component in Cisco WebEx Training Center provides the training-session URL before e-mail confirmation is completed, which allows remote attackers to bypass intended access restrictions and join an audio conference by entering credential fields from this URL, aka Bug ID CSCul36183.
References (6)
Core 6
Core References
Vendor Advisory x_refsource_confirm
http://tools.cisco.com/security/center/viewAlert.x?alertId=32157
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1029492
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://osvdb.org/100911
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/64281
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6965
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/89691
Scores
EPSS
0.0175
EPSS Percentile
75.5%
Details
CWE
CWE-264
Status
published
Products (1)
cisco/webex_training_center
Published
Dec 14, 2013
Tracked Since
Feb 18, 2026