CVE-2012-6007: XSS
Cross-site scripting (XSS) vulnerability in screens/base/webauthcustom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to inject arbitrary web script or HTML via the headline parameter, aka Bug ID CSCud65187, a different vulnerability than CVE-2012-5992.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-6007?
CVE-2012-6007 is classified as a medium-severity vulnerability due to its potential for cross-site scripting exploitation.
How do I fix CVE-2012-6007?
To fix CVE-2012-6007, upgrade your Cisco Wireless LAN Controller software to a version that addresses this vulnerability.
Who is affected by CVE-2012-6007?
CVE-2012-6007 affects Remote authenticated users of Cisco Wireless LAN Controllers running software version 7.2.110.0 and certain hardware models.
What type of vulnerability is CVE-2012-6007?
CVE-2012-6007 is a cross-site scripting (XSS) vulnerability that allows unauthorized script injection.
Can CVE-2012-6007 lead to data breaches?
Yes, CVE-2012-6007 could potentially allow attackers to manipulate session data or steal sensitive information.