First published: Tue Jul 04 2017(Updated: )
A vulnerability in the web framework of Cisco SocialMiner could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web interface of an affected system. More Information: CSCve15285. Known Affected Releases: 11.5(1).
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco SocialMiner | =11.5\(1\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-6702 is rated as a critical severity vulnerability due to its potential to allow XSS attacks.
To fix CVE-2017-6702, update Cisco SocialMiner to a patched version available from Cisco.
CVE-2017-6702 can facilitate cross-site scripting (XSS) attacks, impacting the user's session.
CVE-2017-6702 affects users of the affected versions of Cisco SocialMiner web interface.
Yes, CVE-2017-6702 can be exploited by an unauthenticated remote attacker.