First published: Wed Apr 05 2023(Updated: )
A vulnerability in the web-based management interface of Cisco Unified Contact Center Express (Unified CCX) could allow an authenticated, remote attacker to perform a stored cross-site scripting (XSS) attack.This vulnerability is due to insufficient input validation of user-supplied
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Unified Contact Center Express Enhanced |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of cisco-sa-uccx-xss-GO9L9xxr is classified as high due to the potential for stored cross-site scripting attacks.
To fix cisco-sa-uccx-xss-GO9L9xxr, apply the recommended patches and updates provided by Cisco for the affected Unified Contact Center Express software.
cisco-sa-uccx-xss-GO9L9xxr affects users of Cisco Unified Contact Center Express versions that have not implemented the necessary security updates.
cisco-sa-uccx-xss-GO9L9xxr can lead to stored cross-site scripting attacks, allowing attackers to execute malicious scripts in the user's browser.
Yes, an authenticated user is required to exploit the vulnerability described in cisco-sa-uccx-xss-GO9L9xxr.