Cross-Site Scripting Vulnerabilities in Cisco FireSIGHT Management Center
CVE-2015-6363
Currently unrated
Summary
Multiple cross-site scripting (XSS) vulnerabilities exist in the web framework of Cisco FireSIGHT Management Center versions 5.4.1.4 and 6.0.1. These vulnerabilities permit remote authenticated users to inject arbitrary web scripts or HTML into the application, potentially leading to unauthorized access and manipulation of sensitive information. Attackers can exploit this flaw through unspecified parameters, compromising the integrity of the web application.
References
Timeline
Vulnerability published
Vulnerability Reserved