CVE-2016-1375: XSS
Published Apr 8, 2016
·Updated
Cross-site scripting (XSS) vulnerability in Cisco IP Interoperability and Collaboration System 4.10(1) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuy12339.
Affected Software
1 affected component
cisco IP Interoperability and Collaboration System=4.10
Event History
Apr 8, 2016
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-1375?
CVE-2016-1375 has a medium severity level, allowing remote attackers to exploit the vulnerability.
2
How do I fix CVE-2016-1375?
To fix CVE-2016-1375, it is recommended to upgrade Cisco IP Interoperability and Collaboration System to a version that does not contain the vulnerability.
3
What type of vulnerability is CVE-2016-1375?
CVE-2016-1375 is a Cross-site Scripting (XSS) vulnerability.
4
What can attackers achieve with CVE-2016-1375?
Attackers can inject arbitrary web script or HTML via a crafted URL due to CVE-2016-1375.
5
Is CVE-2016-1375 still a risk in current systems?
CVE-2016-1375 poses a risk only to systems running Cisco IP Interoperability and Collaboration System version 4.10.