First published: Thu Nov 12 2015(Updated: )
Multiple cross-site scripting (XSS) vulnerabilities in the web framework in Cisco FireSIGHT Management Center (MC) 5.4.1.4 and 6.0.1 allow remote authenticated users to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID CSCuw88396.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco FireSIGHT System Software | =5.4.1.4 | |
Cisco FireSIGHT System Software | =6.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6363 has been classified as a high severity vulnerability due to its potential for remote exploitation.
To remediate CVE-2015-6363, update your Cisco FireSIGHT Management Center to a patched version that addresses the vulnerability.
CVE-2015-6363 affects Cisco FireSIGHT System Software versions 5.4.1.4 and 6.0.1.
CVE-2015-6363 is categorized as a cross-site scripting (XSS) vulnerability.
CVE-2015-6363 can be exploited by remote authenticated users to inject arbitrary web scripts or HTML.