CVE-2013-6690: XSS
Multiple cross-site scripting (XSS) vulnerabilities in the web interface in the Assurance component in Cisco Prime Collaboration allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug IDs CSCui92643, CSCui94038, and CSCui94161.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-6690?
CVE-2013-6690 is classified as a high severity vulnerability due to its potential for remote code execution through cross-site scripting.
How do I fix CVE-2013-6690?
To remediate CVE-2013-6690, upgrade to the latest version of Cisco Prime Collaboration that addresses these XSS vulnerabilities.
Who is affected by CVE-2013-6690?
Organizations using Cisco Prime Collaboration for managing communications are affected by CVE-2013-6690.
What types of attacks can CVE-2013-6690 facilitate?
CVE-2013-6690 can facilitate cross-site scripting attacks, which may lead to session hijacking and data theft.
Can CVE-2013-6690 be exploited remotely?
Yes, CVE-2013-6690 can be exploited remotely by attackers to inject arbitrary web scripts or HTML into the web interface.