Skip to content
appaloosa scout logo main rounded
N/A

CVE-2012-6399

Cisco WebEx 4.1 on iOS does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary valid certificate, aka Bug ID CSCud94176.

Affected mobile apps

Vulnerable CPE configurations

Vendor Product Platform Versions CPE 2.3 URI
cisco webex iOS cpe:2.3:a:cisco:webex:4.1:-:*:*:*:iphone_os:*:*
View on NVD ↗