First published: Mon Sep 30 2013(Updated: )
Cross-site scripting (XSS) vulnerability in the Mobile Device Management (MDM) portal in Cisco Identity Services Engine (ISE) allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCui30266.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Identity Services Engine |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-5504 is classified as a high severity vulnerability due to the potential for remote code execution via cross-site scripting.
To fix CVE-2013-5504, update the Cisco Identity Services Engine software to the latest version provided by Cisco.
CVE-2013-5504 can enable attackers to perform cross-site scripting (XSS) attacks through the Mobile Device Management portal.
CVE-2013-5504 affects Cisco Identity Services Engine Software.
CVE-2013-5504 is a remote vulnerability, allowing attackers to exploit it from a distant location.