"A vulnerability in Cisco Webex Meetings and Cisco Webex Meetings Server could have allowed an unauthenticated, remote attacker to join a Webex session without appearing on the participant list," Cisco wrote in a statement, adding it has the researchers at IBM to thank for reporting the vulnerability. According to the company, Jiyong Jang, Research Scientist, and Manager, Dhilung Kirat, Research Scientist, Ian Molloy, Principal RSM, and Department Head, and J.R. Rao, IBM Fellow, and CTO were a part of the team who discovered the threat, which has since been fixed.
The vulnerability was caused by what Cisco calls the 'improper handling of authentication tokens by a vulnerable Webex site.' An unwanted visitor could have therefore used this to their advantage by sending out requests to what Cisco deemed at-risk Cisco Webex Meetings or Cisco Webex Meetings Server sites.
"A successful exploit would have required the attacker to have access to join a Webex meeting, including applicable meeting join links and passwords"
If that was the case, the attacker could then exploit the vulnerability by joining meetings, in a sort of stealth mode, and not appearing among the system's list of meeting participants. They would, in theory, have gained full access to audio, video, chat, and screen sharing capabilities, posing serious security concerns for the collaboration giant.
The company said that once a meeting intruder entered the meeting and got expelled, they could have maintained an audio connection. Those same users could have also gained access to information on meeting attendees — sensitive and information such as the full names, email addresses, and IP addresses of attendees — all from the meeting room lobby.




