CVE-2017-12369: Cisco Webex Meetings

Critical severity, CVSS 9.6. EPSS: 3% chance of exploitation in the next 30 days.

A "Cisco WebEx Network Recording Player Out-of-Bounds Vulnerability" exists in Cisco WebEx Network Recording Player for Advanced Recording Format (ARF) and WebEx Recording Format (WRF) files. A remote attacker could exploit this by providing a user with a malicious ARF or WRF file via email or URL and convincing the user to launch the file. Exploitation of this could cause an affected player to crash and, in some cases, could allow arbitrary code execution on the system of a targeted user. Cisco Bug IDs: CSCve30208, CSCve30214, CSCve30268.

Affected products

  • Cisco Webex Meetings: version t29 only; version t30 only; version t31 only; version t32 only

Published 2017-11-30. Last modified 2026-06-17.