Cross-Site Scripting Vulnerability in Cisco Prime Collaboration Assurance
CVE-2017-3845
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 22 February 2017
What is CVE-2017-3845?
A vulnerability exists in the web-based management interface of Cisco Prime Collaboration Assurance, enabling unauthenticated remote attackers to execute cross-site scripting (XSS) attacks. This allows attackers to inject malicious scripts into web pages viewed by users of the affected interface, potentially leading to the exposure of sensitive information or user session hijacking. The vulnerability affects specific versions of Cisco Prime Collaboration Assurance, specifically versions 11.0, 11.1, and 11.5, while earlier versions remain unaffected.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Cisco Prime Collaboration Assurance Cisco Prime Collaboration Assurance
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved