Vulnerability Name:

CVE-2019-1674 (CCN-157629)

Assigned:2018-12-06
Published:2019-02-27
Updated:2019-10-09
Summary:A vulnerability in the update service of Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools for Windows could allow an authenticated, local attacker to execute arbitrary commands as a privileged user. The vulnerability is due to insufficient validation of user-supplied parameters. An attacker could exploit this vulnerability by invoking the update service command with a crafted argument. An exploit could allow the attacker to run arbitrary commands with SYSTEM user privileges. While the CVSS Attack Vector metric denotes the requirement for an attacker to have local access, administrators should be aware that in Active Directory deployments, the vulnerability could be exploited remotely by leveraging the operating system remote management tools. This vulnerability is fixed in Cisco Webex Meetings Desktop App Release 33.6.6 and 33.9.1 releases. This vulnerability is fixed in Cisco Webex Productivity Tools Release 33.0.7.
CVSS v3 Severity:8.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
7.9 High (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
7.8 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
7.0 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:9.0 High (CVSS v2 Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Authentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
6.8 Medium (CCN CVSS v2 Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-78
Vulnerability Consequences:Gain Access
References:Source: MITRE
Type: CNA
CVE-2019-1674

Source: BID
Type: Third Party Advisory
107184

Source: XF
Type: UNKNOWN
cisco-webex-cve20191674-command-exec(157629)

Source: CCN
Type: Packet Storm Security [02-28-2019]
Cisco WebEx Meetings Privilege Escalation

Source: CCN
Type: Cisco Security Advisory cisco-sa-20190227-wmda-cmdinj
Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools Update Service Command Injection Vulnerability

Source: CISCO
Type: Vendor Advisory
20190227 Cisco Webex Meetings Desktop App and Cisco Webex Productivity Tools Update Service Command Injection Vulnerability

Source: EXPLOIT-DB
Type: EXPLOIT
Offensive Security Exploit Database [03-01-2019]

Source: EXPLOIT-DB
Type: Exploit, Third Party Advisory
46479

Vulnerable Configuration:Configuration 1:
  • cpe:/a:cisco:webex_meetings:*:*:*:*:desktop:*:*:* (Version < 33.6.6)
  • OR cpe:/a:cisco:webex_meetings_online:t33.0.5:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:webex_meetings_online:t33.6.0:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:webex_meetings_online:t33.6.1:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:webex_meetings_online:t33.6.2:*:*:*:*:*:*:*
  • OR cpe:/a:cisco:webex_productivity_tools:*:*:*:*:*:*:*:* (Version >= 32.6.0 and < 33.0.7)
  • AND
  • cpe:/o:microsoft:windows:-:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    cisco webex meetings *
    cisco webex meetings online t33.0.5
    cisco webex meetings online t33.6.0
    cisco webex meetings online t33.6.1
    cisco webex meetings online t33.6.2
    cisco webex productivity tools *
    microsoft windows -