CVE-2016-1306: XSS
Published Feb 6, 2016
·Updated
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Fog Director 1.0(0) allow remote attackers to inject arbitrary web script or HTML via a crafted parameter, aka Bug ID CSCux80466.
Affected Software
1 affected component
Sun OpenSolaris=snv_124
Event History
Feb 6, 2016
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1306?
CVE-2016-1306 has a medium severity rating due to its potential for exploitation through cross-site scripting.
2
How do I fix CVE-2016-1306?
To fix CVE-2016-1306, update Cisco Fog Director to the latest version provided by Cisco.
3
What systems are affected by CVE-2016-1306?
CVE-2016-1306 affects Cisco Fog Director version 1.0(0) on multiple platforms.
4
What types of attacks can CVE-2016-1306 enable?
CVE-2016-1306 can enable attackers to perform cross-site scripting attacks, allowing them to inject malicious scripts.
5
Is there a workaround for CVE-2016-1306?
Currently, there are no documented workarounds for CVE-2016-1306—patching is the recommended solution.