First published: Wed May 02 2012(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in the Solution Engine in Cisco Secure Access Control Server (ACS) 5.2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCtr78192.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Secure Access Control Server | =5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-3317 is classified as a medium severity vulnerability due to its potential for remote exploitation.
To mitigate CVE-2011-3317, it is recommended to update to the latest version of Cisco Secure Access Control Server.
CVE-2011-3317 allows remote attackers to exploit multiple cross-site scripting (XSS) vulnerabilities.
CVE-2011-3317 specifically affects Cisco Secure Access Control Server version 5.2.
Remote attackers can potentially exploit CVE-2011-3317 to inject arbitrary web script or HTML into the affected system.