First published: Mon Sep 16 2013(Updated: )
Cross-site scripting (XSS) vulnerability in the web framework in the Application Server in Cisco Unified MeetingPlace allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCui44681.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified MeetingPlace |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-5495 is considered a medium severity vulnerability due to its potential for cross-site scripting attacks.
To fix CVE-2013-5495, update the Cisco Unified MeetingPlace to the latest version that addresses this vulnerability.
Organizations using Cisco Unified MeetingPlace are affected by CVE-2013-5495.
CVE-2013-5495 allows remote attackers to perform cross-site scripting (XSS) exploits through injected web scripts or HTML.
Attackers exploiting CVE-2013-5495 can manipulate web content and potentially steal user credentials or perform unauthorized actions.