Kaspersky ID:
KLA12059
Data de detecção:
12/10/2020
Atualizado:
01/25/2024

Descrição

Multiple vulnerabilities were found in Cisco Jabber. Malicious users can exploit these vulnerabilities to execute arbitrary code, obtain sensitive information, bypass security restrictions.

Below is a complete list of vulnerabilities:

  1. A command injection vulnerability in Cisco Jabber can be exploited remotely to execute arbitrary code.
  2. An unauthorized access vulnerability in Cisco Jabber can be exploited remotely to obtain sensitive information and bypass security restrictions.
  3. An information disclosure vulnerability in Cisco Jabber can be exploited remotely via special crafted message to obtain sensitive information.
  4. A program execution vulnerability in Cisco Jabber can be exploited remotely via special crafted XMPP message to execute arbitrary code.
  5. A script injection vulnerability in Cisco Jabber can be exploited remotely via special crafted XMPP message to execute arbitrary code.

Comunicados originais

Exploração

Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.

Produtos relacionados

Lista de CVE

  • CVE-2020-27133
    critical
  • CVE-2020-27127
    critical
  • CVE-2020-27132
    critical
  • CVE-2020-26085
    critical
  • CVE-2020-27134
    critical

Saiba mais

Descubra as estatísticas das vulnerabilidades que se espalham em sua região statistics.securelist.com

Encontrou uma imprecisão na descrição desta vulnerabilidade? Avise-nos!
Kaspersky Next:
cibersegurança redefinida
Saber mais
Novo Kaspersky!
Sua vida dgital merece proteção completa!
Saber mais
Do you want to save your changes?
Your message has been sent successfully.