CVE-2012-3941: Cisco Webex Recording Format Player

High severity, CVSS 9.3. EPSS: 5.3% chance of exploitation in the next 30 days.

Heap-based buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCtz72850.

Affected products

  • Cisco Webex Recording Format Player: version 27.11.26 only; version 27.21.10 only; version 27.25.10 only; version 27.32.1 only; version 28.0.0 only

Published 2012-10-25. Last modified 2026-06-16.