CVE-2016-4349

HIGH

Cisco WebEx Productivity Tools 2.40.5001.10012 - Privilege Escalation

Title source: llm
STIX 2.1

Description

Untrusted search path vulnerability in Cisco WebEx Productivity Tools 2.40.5001.10012 allows local users to gain privileges via a Trojan horse cryptsp.dll, dwmapi.dll, msimg32.dll, ntmarta.dll, propsys.dll, riched20.dll, rpcrtremote.dll, secur32.dll, sxs.dll, or uxtheme.dll file in the current working directory, aka Bug ID CSCuy56140.

References (1)

Core 1

Scores

CVSS v3 7.8
EPSS 0.0038
EPSS Percentile 30.9%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (1)
cisco/webex_productivity_tools 2.40.5001.10012
Published Apr 28, 2016
Tracked Since Feb 18, 2026