CVE-2020-3182

MEDIUM

Cisco Webex Meetings Client - Info Disclosure

Title source: llm
STIX 2.1

Description

A vulnerability in the multicast DNS (mDNS) protocol configuration of Cisco Webex Meetings Client for MacOS could allow an unauthenticated adjacent attacker to obtain sensitive information about the device on which the Webex client is running. The vulnerability exists because sensitive information is included in the mDNS reply. An attacker could exploit this vulnerability by doing an mDNS query for a particular service against an affected device. A successful exploit could allow the attacker to gain access to sensitive information.

References (1)

Core 1
Core References

Scores

CVSS v3 4.3
EPSS 0.0021
EPSS Percentile 43.2%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-200
Status published
Products (1)
cisco/webex_meetings < 40.1.8.5
Published Mar 04, 2020
Tracked Since Feb 18, 2026