cisco-sa-pi-xss-bYeVKCD: Cisco Prime Infrastructure Stored Cross-Site Scripting Vulnerability
A vulnerability in the web-based management interface of Cisco Prime Infrastructure could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against users of the interface of an affected system.This vulnerability exists because the web-based
Affected Software
Event History
Frequently Asked Questions
What is the severity of Cisco-SA-PI-XSS-BYeVKCD?
The severity of Cisco-SA-PI-XSS-BYeVKCD is classified as medium due to the potential for authenticated attackers to exploit XSS vulnerabilities.
How do I fix Cisco-SA-PI-XSS-BYeVKCD?
To fix Cisco-SA-PI-XSS-BYeVKCD, update your Cisco Prime Infrastructure to the latest patched version provided by Cisco.
Who is affected by Cisco-SA-PI-XSS-BYeVKCD?
Any organization using Cisco Prime Infrastructure with the web-based management interface is potentially affected by Cisco-SA-PI-XSS-BYeVKCD.
What types of attacks can be executed due to Cisco-SA-PI-XSS-BYeVKCD?
Exploiting Cisco-SA-PI-XSS-BYeVKCD could allow an attacker to execute unauthorized scripts in the context of other users' sessions.
Is authentication required to exploit Cisco-SA-PI-XSS-BYeVKCD?
Yes, authentication is required for an attacker to exploit the vulnerabilities described in Cisco-SA-PI-XSS-BYeVKCD.