First published: Tue Aug 10 2010(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Wireless Control System (WCS) 7.x before 7.0.164, as used in Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0, allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCtg33854.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Wireless Control System Software | =7.0 | |
Cisco Unified Wireless Network Solution | =7.0 | |
Cisco Unified Wireless Network Solution | =7.0.98.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-2987 is classified as a high severity vulnerability due to its potential for cross-site scripting attacks.
To fix CVE-2010-2987, upgrade the Cisco Wireless Control System to version 7.0.164 or later.
CVE-2010-2987 affects Cisco Wireless Control System 7.x prior to 7.0.164 and Cisco Unified Wireless Network Solution 7.x before 7.0.98.0.
Yes, CVE-2010-2987 can be exploited remotely by attackers to inject arbitrary web scripts or HTML.
The impacts of CVE-2010-2987 include the potential for unauthorized access to sensitive information through executed scripts.