Multiple Vulnerabilities in Cisco Data Center Network Manager Software
CVE-2017-12345
4.7MEDIUM
Key Information:
- Vendor
- Cisco
- Vendor
- CVE Published:
- 30 November 2017
Summary
Cisco Data Center Network Manager (DCNM) Software has multiple vulnerabilities that could allow a remote attacker to inject arbitrary values into configuration parameters, potentially redirecting users to malicious websites or injecting harmful content into the client interface. Additionally, these vulnerabilities open the door to cross-site scripting (XSS) attacks against users of the software, posing significant security risks. For more information, see Cisco's security advisory.
Affected Version(s)
Cisco Data Center Network Manager Software Cisco Data Center Network Manager Software
References
CVSS V3.1
Score:
4.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed
Timeline
Vulnerability published
Vulnerability Reserved