Kaspersky ID:
KLA12059
Bulunma tarihi:
12/10/2020
Yüklendi:
01/25/2024

Açıklama

Multiple vulnerabilities were found in Cisco Jabber. Malicious users can exploit these vulnerabilities to execute arbitrary code, obtain sensitive information, bypass security restrictions.

Below is a complete list of vulnerabilities:

  1. A command injection vulnerability in Cisco Jabber can be exploited remotely to execute arbitrary code.
  2. An unauthorized access vulnerability in Cisco Jabber can be exploited remotely to obtain sensitive information and bypass security restrictions.
  3. An information disclosure vulnerability in Cisco Jabber can be exploited remotely via special crafted message to obtain sensitive information.
  4. A program execution vulnerability in Cisco Jabber can be exploited remotely via special crafted XMPP message to execute arbitrary code.
  5. A script injection vulnerability in Cisco Jabber can be exploited remotely via special crafted XMPP message to execute arbitrary code.

Orijinal öneriler

Kötüye kullanma

Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.

İlgili ürünler

CVE Listesi

  • CVE-2020-27133
    critical
  • CVE-2020-27127
    critical
  • CVE-2020-27132
    critical
  • CVE-2020-26085
    critical
  • CVE-2020-27134
    critical

Daha fazlasını okuyun

Bölgenizde yayılan güvenlik açıklarının istatistiklerini öğrenin statistics.securelist.com

Bu güvenlik açığının açıklamasında bir tutarsızlık mı tespit ettiniz? Bize bildirin!
Kaspersky IT Security Calculator
Daha fazla bilgi edin
Yeni Kaspersky!
Dijital hayatınız güçlü korumayı hak ediyor!
Daha fazla bilgi edin
Do you want to save your changes?
Your message has been sent successfully.