Cross-Site Scripting Vulnerability in Cisco Unified Operations Manager
CVE-2013-3439

Currently unrated

Key Information:

Vendor

Cisco

Vendor
CVE Published:
23 July 2013

What is CVE-2013-3439?

A cross-site scripting (XSS) vulnerability exists in the Cisco Unified Operations Manager, enabling attackers to inject arbitrary web scripts or HTML. This can be executed via a specially crafted URL in an unspecified HTTP header field. Exploitation of this vulnerability may allow unauthorized actions to be performed within the context of the user's session. It is important for users of Cisco Unified Operations Manager to implement security patches and review security protocols to safeguard against potential exploitation.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2013-3439 : Cross-Site Scripting Vulnerability in Cisco Unified Operations Manager