First published: Wed Jan 24 2024(Updated: )
A vulnerability in the web-based management interface of Cisco Unity Connection could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface.This vulnerability exists because the web-based management interface does not
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unity Connection 8.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of cisco-sa-cuc-xss-9TFuu5MS is medium due to its potential for cross-site scripting attacks.
To fix cisco-sa-cuc-xss-9TFuu5MS, apply the latest security updates provided by Cisco for Unity Connection.
Authenticated users of the web-based management interface of Cisco Unity Connection are affected by cisco-sa-cuc-xss-9TFuu5MS.
cisco-sa-cuc-xss-9TFuu5MS exploits the web-based management interface, allowing remote attackers to perform XSS attacks.
Yes, cisco-sa-cuc-xss-9TFuu5MS can be exploited remotely by authenticated attackers targeting the web interface.