First published: Wed Jan 22 2014(Updated: )
Cross-site scripting (XSS) vulnerability in the Search and Play interface in Cisco MediaSense allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCum16686.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco MediaSense |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-0670 has a medium severity rating due to its potential for cross-site scripting attacks.
To mitigate CVE-2014-0670, it's recommended to apply the latest security patches provided by Cisco for MediaSense.
CVE-2014-0670 is classified as a cross-site scripting (XSS) vulnerability.
CVE-2014-0670 affects users of Cisco MediaSense where the Search and Play interface is utilized.
Yes, CVE-2014-0670 can be exploited remotely by attackers injecting arbitrary web scripts or HTML.