First published: Thu Jan 17 2013(Updated: )
Cross-site scripting (XSS) vulnerability in Cisco WebEx Social (formerly Cisco Quad) allows remote attackers to inject arbitrary web script or HTML via a crafted RSS service link, aka Bug ID CSCub61977.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Quad | ||
Cisco Webex Social |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-6397 has been assigned a moderate severity level due to the potential for cross-site scripting attacks.
To fix CVE-2012-6397, update your Cisco WebEx Social or Cisco Quad to the latest version provided by Cisco.
CVE-2012-6397 affects Cisco WebEx Social and Cisco Quad software applications.
Yes, CVE-2012-6397 can be exploited by remote attackers to inject arbitrary web script or HTML into affected systems.
CVE-2012-6397 is a cross-site scripting (XSS) vulnerability, which allows for the injection of harmful scripts.