Description
|
|
A vulnerability has been identified in Cisco WebEx Meeting Center.
A remote attacker can exploit it by injecting into the parameter "returnUrl" arbitrary JavaScript or HTML code that will be executed when the victim clicks on the "Cancel" button of the form.
This vulnerability is due to insufficient validation of parameter "returnUrl" that defines the action associated with the form.
|