CVE-2015-6353: XSS
Multiple cross-site scripting (XSS) vulnerabilities in Cisco FireSight Management Center (MC) 5.3.1.5 and 5.4.x through 5.4.1.3 allow remote authenticated users to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID CSCuu28922.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6353?
CVE-2015-6353 is classified as a high severity vulnerability due to the potential for remote authenticated users to perform cross-site scripting attacks.
How do I fix CVE-2015-6353?
To fix CVE-2015-6353, upgrade to the latest version of Cisco FireSight Management Center that addresses this vulnerability.
What are the affected versions in CVE-2015-6353?
CVE-2015-6353 affects Cisco FireSight Management Center versions 5.3.1.5 and 5.4.x through 5.4.1.3.
What type of attacks does CVE-2015-6353 allow?
CVE-2015-6353 allows remote authenticated users to inject arbitrary web scripts or HTML, enabling potential cross-site scripting attacks.
Who can exploit CVE-2015-6353?
CVE-2015-6353 can be exploited by remote authenticated users who have access to the Cisco FireSight Management Center.