Vulnerability Details CVE-2014-2132
Cisco WebEx Recording Format (WRF) player and Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allow remote attackers to cause a denial of service (application crash) via a crafted (1) .wrf or (2) .arf file that triggers a buffer over-read, aka Bug ID CSCuh52768.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.4%
CVSS Severity
CVSS v2 Score 7.8
Products affected by CVE-2014-2132
-
cpe:2.3:a:cisco:webex_advanced_recording_format_player:t27ld
-
cpe:2.3:a:cisco:webex_advanced_recording_format_player:t28
-
cpe:2.3:a:cisco:webex_advanced_recording_format_player:t29
-
cpe:2.3:a:cisco:webex_recording_format_player:t27ld
-
cpe:2.3:a:cisco:webex_recording_format_player:t28
-
cpe:2.3:a:cisco:webex_recording_format_player:t29