Cross-Site Scripting Vulnerabilities in Cisco FireSIGHT Management Center
CVE-2015-6363

Currently unrated

Key Information:

Vendor
Cisco
Vendor
CVE Published:
12 November 2015

Summary

Multiple cross-site scripting (XSS) vulnerabilities exist in the web framework of Cisco FireSIGHT Management Center versions 5.4.1.4 and 6.0.1. These vulnerabilities permit remote authenticated users to inject arbitrary web scripts or HTML into the application, potentially leading to unauthorized access and manipulation of sensitive information. Attackers can exploit this flaw through unspecified parameters, compromising the integrity of the web application.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.