AI Agent Vulnerability Leads to RCE in Cisco Webex Meetings

A new, previously unknown vulnerability (CVE-2023-21343, CVSS score 9.5) in Cisco Webex Meetings has been exploited by attackers to execute remote code execution (RCE) attacks on Windows and Linux systems.

Bottom line: A previously unknown vulnerability in Cisco Webex Meetings has been exploited to execute RCE attacks.

What's happening: Attackers have exploited CVE-2023-21343 (CVSS score 9.5) in Cisco Webex Meetings to target Windows and Linux systems, compromising 10,000+ Windows and 5,000+ Linux systems worldwide.

What to do: Security leaders should immediately update Cisco Webex Meetings to version 3.1.5 or later, and review their meeting security settings to prevent unauthorized access.

Source: The Hacker News