First published: Sat Feb 06 2016(Updated: )
Cross-site scripting (XSS) vulnerability in Cisco Unity Connection 11.5(0.199) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuy09033.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Oracle Solaris and Zettabyte File System (ZFS) | =snv_124 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-1310 is classified as a high-severity vulnerability due to its potential for remote exploitation.
To fix CVE-2016-1310, update Cisco Unity Connection to a version that addresses this vulnerability.
CVE-2016-1310 is a cross-site scripting (XSS) vulnerability.
CVE-2016-1310 affects users of Cisco Unity Connection version 11.5(0.199).
An attacker could exploit CVE-2016-1310 to inject arbitrary web scripts or HTML through crafted URLs.