CVE-2016-1392: High severity cisco prime collaboration assurance vulnerability
Open redirect vulnerability in Cisco Prime Collaboration Assurance Software 10.5 through 11.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors, aka Bug ID CSCuu34121.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-1392?
CVE-2016-1392 has been categorized as a moderate severity vulnerability due to the risk of unauthorized redirection and potential phishing attacks.
How do I fix CVE-2016-1392?
To mitigate CVE-2016-1392, update Cisco Prime Collaboration Assurance Software to a version that is not affected, such as version 11.1.0 or later.
What versions of Cisco Prime Collaboration Assurance are affected by CVE-2016-1392?
CVE-2016-1392 affects Cisco Prime Collaboration Assurance versions 10.5.0, 10.5.1, 10.6.0, and 11.0.0.
What type of attacks can CVE-2016-1392 be exploited for?
CVE-2016-1392 can be exploited to perform phishing attacks by redirecting users to arbitrary malicious websites.
Can CVE-2016-1392 be exploited remotely?
Yes, CVE-2016-1392 allows remote attackers to exploit the vulnerability without needing physical access to the vulnerable system.