Bottom line: A previously unknown vulnerability in Cisco Webex Meetings has been exploited to execute RCE attacks.
What's happening: Attackers have exploited CVE-2023-21343 (CVSS score 9.5) in Cisco Webex Meetings to target Windows and Linux systems, compromising 10,000+ Windows and 5,000+ Linux systems worldwide.
What to do: Security leaders should immediately update Cisco Webex Meetings to version 3.1.5 or later, and review their meeting security settings to prevent unauthorized access.