First published: Thu Jun 04 2015(Updated: )
Cross-site scripting (XSS) vulnerability in the management interface in Cisco Unified MeetingPlace 8.6(1.2) and 8.6(1.9) for Microsoft Outlook allows remote attackers to inject arbitrary web script or HTML via a crafted value in a URL, aka Bug ID CSCuu51400.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified MeetingPlace | =8.6\(1.2\) | |
Cisco Unified MeetingPlace | =8.6\(1.9\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-0762 is classified as a medium severity vulnerability.
To fix CVE-2015-0762, update Cisco Unified MeetingPlace to a version that addresses this vulnerability.
CVE-2015-0762 is a cross-site scripting (XSS) vulnerability affecting the management interface.
CVE-2015-0762 affects users of Cisco Unified MeetingPlace versions 8.6(1.2) and 8.6(1.9).
Attackers exploiting CVE-2015-0762 can inject arbitrary web script or HTML via a crafted URL.