Multiple Vulnerabilities in Cisco Data Center Network Manager Software
CVE-2017-12345

4.7MEDIUM

Key Information:

Vendor
Cisco
Vendor
CVE Published:
30 November 2017

Summary

Cisco Data Center Network Manager (DCNM) Software has multiple vulnerabilities that could allow a remote attacker to inject arbitrary values into configuration parameters, potentially redirecting users to malicious websites or injecting harmful content into the client interface. Additionally, these vulnerabilities open the door to cross-site scripting (XSS) attacks against users of the software, posing significant security risks. For more information, see Cisco's security advisory.

Affected Version(s)

Cisco Data Center Network Manager Software Cisco Data Center Network Manager Software

References

CVSS V3.1

Score:
4.7
Severity:
MEDIUM
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.