CVE-2014-0652: XSS
Cross-site scripting (XSS) vulnerability in the Mappings page in Cisco Context Directory Agent (CDA) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuj45358.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-0652?
The severity of CVE-2014-0652 is categorized as medium due to its potential to allow remote attackers to perform cross-site scripting attacks.
How do I fix CVE-2014-0652?
To fix CVE-2014-0652, users should update their Cisco Context Directory Agent to the latest version recommended by Cisco.
What systems are affected by CVE-2014-0652?
CVE-2014-0652 affects the Cisco Context Directory Agent across all versions.
What type of attack does CVE-2014-0652 enable?
CVE-2014-0652 enables cross-site scripting (XSS) attacks, allowing attackers to inject arbitrary web scripts or HTML.
Who can exploit CVE-2014-0652?
Remote attackers can exploit CVE-2014-0652 by using crafted URLs to inject malicious scripts.