First published: Fri Jan 10 2014(Updated: )
Cross-site scripting (XSS) vulnerability in the web framework in Cisco Secure Access Control System (ACS) allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCum03625.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Secure Access Control System |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0663 is classified as a medium severity vulnerability due to its potential for exploitation via XSS attacks.
To fix CVE-2014-0663, update the Cisco Secure Access Control System to the latest version provided by Cisco that addresses this vulnerability.
Any user of Cisco Secure Access Control System may be affected by CVE-2014-0663 if they are using a vulnerable version of the software.
CVE-2014-0663 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary scripts.
Yes, attackers can exploit CVE-2014-0663 remotely, allowing for unauthorized access or data manipulation.