CVE-2014-2135: Cisco Webex Advanced Recording Format Player

High severity, CVSS 9.3. EPSS: 3.8% chance of exploitation in the next 30 days.

Buffer overflow in Cisco Advanced Recording Format (ARF) player T27 LD before SP32 EP16, T28 before T28.12, and T29 before T29.2 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted .arf file, aka Bug IDs CSCul87216 and CSCuj07603.

Affected products

  • Cisco Webex Advanced Recording Format Player: version t27ld only; version t28 only; version t29 only
  • Cisco Webex Recording Format Player: version t27ld only; version t28 only; version t29 only

Published 2014-05-08. Last modified 2026-06-17.