CVE-2015-0752: XSS
Published May 29, 2015
·Updated
Cross-site scripting (XSS) vulnerability in Cisco TelePresence Video Communication Server (VCS) X8.5.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCut27635.
Affected Software
1 affected component
Cisco TelePresence Video Communication Server=x8.5.1
Event History
May 29, 2015
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-0752?
CVE-2015-0752 has a Medium severity rating, indicating a moderate risk to affected systems.
2
How do I fix CVE-2015-0752?
To fix CVE-2015-0752, upgrade the Cisco TelePresence Video Communication Server to a patched version provided by Cisco.
3
What type of vulnerability is CVE-2015-0752?
CVE-2015-0752 is a cross-site scripting (XSS) vulnerability that allows attackers to inject arbitrary web scripts.
4
Who is affected by CVE-2015-0752?
Organizations using Cisco TelePresence Video Communication Server version X8.5.1 are affected by CVE-2015-0752.
5
Can CVE-2015-0752 be exploited remotely?
Yes, CVE-2015-0752 can be exploited remotely through a crafted URL by an attacker.