First published: Thu Jun 25 2015(Updated: )
Cross-site scripting (XSS) vulnerability in Cisco Unified Presence Server 9.1(1) allows remote attackers to inject arbitrary web script or HTML via an unspecified value, aka Bug ID CSCuq03773.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Presence | =9.1\(1\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-4220 has a severity rating that suggests a potential significant impact on affected systems due to the XSS vulnerability.
To mitigate CVE-2015-4220, ensure that you apply the latest patches provided by Cisco for Unified Presence Server version 9.1(1).
CVE-2015-4220 specifically affects Cisco Unified Presence Server version 9.1(1).
CVE-2015-4220 is classified as a cross-site scripting (XSS) vulnerability.
Yes, CVE-2015-4220 can be exploited by remote attackers to inject arbitrary web scripts or HTML.