{"id":620,"date":"2017-01-30T08:39:37","date_gmt":"2017-01-30T14:39:37","guid":{"rendered":"http:\/\/www.echorequest.com\/?p=620"},"modified":"2017-01-30T08:39:37","modified_gmt":"2017-01-30T14:39:37","slug":"do-you-webex","status":"publish","type":"post","link":"https:\/\/www.echorequest.com\/?p=620","title":{"rendered":"Do you WebEx?"},"content":{"rendered":"<p>If you use Webex at work &#8211; from your browser, which I&#8217;m sure you do&#8230;better pay attention.<\/p>\n<p>Cisco just released a CRITICAL vulnerability alert that would allow<!--more--> someone to take control of your pc if they can get you to click on a meeting link that&#8217;s malicious. \u00a0Many vendors have people use Webex &#8211; many companies pay big money to use webex &#8211; so pay attention and go save yourself!<\/p>\n<p>https:\/\/tools.cisco.com\/security\/center\/content\/CiscoSecurityAdvisory\/cisco-sa-20170124-webex<\/p>\n<p>&nbsp;<\/p>\n<p><em>Google Chrome<\/em><br \/>\nCisco WebEx Extension for Google Chrome version 1.0.7 was released on January 26, 2017 and contains a fix for this vulnerability. Chrome users can ensure they are using the fixed version of the Cisco WebEx Extension for Google Chrome by doing the following:<\/p>\n<ol>\n<li>In Chrome, open the <strong>Settings <\/strong>page.<\/li>\n<li>Click <strong>Extensions<\/strong>.<\/li>\n<\/ol>\n<p>The extension version is listed next to the Cisco WebEx Extension name.<\/p>\n<p><em>Mozilla Firefox<\/em><br \/>\nVersion 106 of the ActiveTouch General Plugin Container for Mozilla Firefox was released on January 28, 2017 and contains a fix for this vulnerability. Mozilla users can ensure they are using the fixed version of the ActiveTouch General Plugin Container for Mozilla by:<\/p>\n<ol>\n<li>Clicking the menu button (three horizontal bars on the upper right of the application) and selecting <strong>Add-ons<\/strong>.<\/li>\n<li>In the <strong>Add-ons<\/strong> <strong>Manager<\/strong> tab, click the <strong>Plugins<\/strong> panel<\/li>\n<li>Locate the <strong>ActiveTouch General Plugin Container<\/strong> in the list of Plugins and click on the <strong>More<\/strong> link to obtain the version information<\/li>\n<\/ol>\n<p><em>Microsoft Internet Explorer<\/em><br \/>\nVersion 10031.6.2017.0127 of the GpcContainer Class for Microsoft Internet Explorer was released on January 28, 2017 and contains a fix for this vulnerability. Internet Explorer users can ensure they are using the fixed version of the GpcContainer Class for Internet Explorer by:<\/p>\n<ol>\n<li>In Internet Explorer, select the <strong>Tools<\/strong> button<\/li>\n<li>Select <strong>Manage add-ons<\/strong><\/li>\n<li>Select <strong>All add-ons<\/strong> from the Show drop-down menu<\/li>\n<li>Select the<strong> GpcContainer Class<\/strong> add-on under <strong>Cisco WebEx LLC<\/strong><\/li>\n<\/ol>\n<p>The version number is displayed at the bottom of the <strong>Manage Add-ons<\/strong> window.<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<hr \/>\n<p><strong>Fixed Releases<\/strong><\/p>\n<p>For the latest information about the following products, please consult the Cisco bug ID provided:<\/p>\n<ul>\n<li>Cisco WebEx Meeting Centers: <a href=\"https:\/\/tools.cisco.com\/bugsearch\/bug\/CSCvc86959\">CSCvc86959<\/a><\/li>\n<li>Cisco WebEx Meetings Server: <a href=\"https:\/\/tools.cisco.com\/bugsearch\/bug\/CSCvc88194\">CSCvc88194<\/a><\/li>\n<li>Cisco WebEx Meetings: <a href=\"https:\/\/tools.cisco.com\/bugsearch\/bug\/CSCvc88535\">CSCvc88535<\/a><\/li>\n<\/ul>\n<p><em>Google Chrome<\/em><br \/>\nCisco WebEx Extension for Google Chrome version 1.0.7 was released on January 26, 2017 and contains a fix for this vulnerability. Chrome users can ensure they are using the fixed version of the Cisco WebEx Extension for Google Chrome by doing the following:<\/p>\n<ol>\n<li>In Chrome, open the <strong>Settings <\/strong>page.<\/li>\n<li>Click <strong>Extensions<\/strong>.<\/li>\n<li>Select the <strong>Developer mode<\/strong> checkbox.<\/li>\n<li>Click <strong>Update extensions now<\/strong>.<\/li>\n<li>Restart the Chrome browser.<\/li>\n<\/ol>\n<p><em>Mozilla Firefox<\/em><br \/>\nVersion 106 of the ActiveTouch General Plugin Container for Mozilla Firefox was released on January 28, 2017 and contains a fix for this vulnerability. Mozilla users can ensure they are using the fixed version of the ActiveTouch General Plugin Container for Mozilla by:<\/p>\n<ol>\n<li>Clicking the menu button (three horizontal bars on the upper right of the application) and selecting <strong>Add-ons<\/strong>.<\/li>\n<li>In the <strong>Add-ons Manager<\/strong> tab, click the <strong>Plugins<\/strong> panel<\/li>\n<li>Locate the <strong>ActiveTouch General Plugin Container<\/strong> in the list of Plugins and click on the <strong>More<\/strong> link to obtain the version information<\/li>\n<\/ol>\n<p><em>Microsoft Internet Explorer<\/em><br \/>\nVersion 10031.6.2017.0127 of the GpcContainer Class for Microsoft Internet Explorer was released on January 28, 2017 and contains a fix for this vulnerability. Internet Explorer users can ensure they are using the fixed version of the GpcContainer Class for Internet Explorer by:<\/p>\n<ol>\n<li>In Internet Explorer, select the <strong>Tools<\/strong> button<\/li>\n<li>Select <strong>Manage add-ons<\/strong><\/li>\n<li>Select <strong>All add-ons<\/strong> from the Show drop-down menu<\/li>\n<li>Select the <strong>GpcContainer Class<\/strong> add-on under <strong>Cisco WebEx LLC<\/strong><\/li>\n<\/ol>\n<p>The version number is displayed at the bottom of the <strong>Manage Add-ons<\/strong> window.<\/p>\n<p>Current WebEx customers can confirm that their site has received updated software by reviewing the <strong>Application Version<\/strong> information found in the <strong>Support <\/strong>section of their WebEx page. To view this information, please perform the followings steps:<\/p>\n<ol>\n<li>Sign into your WebEx account<\/li>\n<li>Click the <strong>Meeting Center<\/strong> tab<\/li>\n<li>Under <strong>Support<\/strong>, click <strong>Downloads<\/strong><\/li>\n<\/ol>\n<p>The <strong>Application Version<\/strong> is displayed on the right hand side of the screen under the <strong>About Meeting Center<\/strong> heading.<\/p>\n<div class=\"tblScroller\">\n<table>\n<tbody>\n<tr>\n<th><strong>Cisco WebEx Software Major Release<\/strong><\/th>\n<th><strong>First Fixed Application Version<\/strong><\/th>\n<\/tr>\n<tr>\n<td>\u00a0T31.10.2<\/td>\n<td>\u00a031.10.2.5<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T31.9.8<\/td>\n<td>\u00a031.9.8.5<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T30.16.2<\/td>\n<td>\u00a030.16.2.10007 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T30.15.5<\/td>\n<td>\u00a030.15.5.10009 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T30.14.2<\/td>\n<td>\u00a030.14.2.10003 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T30.12.4<\/td>\n<td>\u00a030.12.4.10004 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T30.9.2<\/td>\n<td>\u00a030.9.2.10010 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T30.6.6<\/td>\n<td>\u00a030.6.6.10006 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T30.4.4<\/td>\n<td>\u00a030.4.4.10003 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T29.13.121<\/td>\n<td>\u00a029.13.121.10011 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T29.13.94<\/td>\n<td>\u00a029.13.94.10005 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T29.13.73<\/td>\n<td>\u00a029.13.72.10007 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T29.13.56<\/td>\n<td>\u00a029.13.56.10008 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T29.13.42<\/td>\n<td>\u00a029.13.42.10008 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T29.13.35<\/td>\n<td>\u00a029.13.25.10005 E<\/td>\n<\/tr>\n<tr>\n<td>\u00a0T29.13.14<\/td>\n<td>\u00a029.13.14.10012 E<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>If you use Webex at work &#8211; from your browser, which I&#8217;m sure you do&#8230;better pay attention. Cisco just released a CRITICAL vulnerability alert that would allow<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[9],"tags":[],"class_list":["post-620","post","type-post","status-publish","format-standard","hentry","category-geek","post-preview"],"_links":{"self":[{"href":"https:\/\/www.echorequest.com\/index.php?rest_route=\/wp\/v2\/posts\/620","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.echorequest.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.echorequest.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.echorequest.com\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.echorequest.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=620"}],"version-history":[{"count":1,"href":"https:\/\/www.echorequest.com\/index.php?rest_route=\/wp\/v2\/posts\/620\/revisions"}],"predecessor-version":[{"id":621,"href":"https:\/\/www.echorequest.com\/index.php?rest_route=\/wp\/v2\/posts\/620\/revisions\/621"}],"wp:attachment":[{"href":"https:\/\/www.echorequest.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=620"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.echorequest.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=620"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.echorequest.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=620"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}