cisco-sa-vmanage-html-3ZKh8d6x: Cisco Catalyst SD-WAN Manager Web UI HTML Injection Vulnerability
A vulnerability in the web-based management interface of Cisco Catalyst SD-WAN Manager, formerly Cisco SD-WAN vManage, could allow an authenticated, remote attacker to inject HTML content.This vulnerability is due to improper validation of user-supplied data in element fields. An
Affected Software
Event History
Frequently Asked Questions
What is the severity of cisco-sa-vmanage-html-3ZKh8d6x?
The severity of cisco-sa-vmanage-html-3ZKh8d6x is classified as high due to the potential for HTML injection by an authenticated remote attacker.
How do I fix cisco-sa-vmanage-html-3ZKh8d6x?
To fix cisco-sa-vmanage-html-3ZKh8d6x, ensure to apply the latest security patches from Cisco for the Catalyst SD-WAN Manager.
Who is affected by cisco-sa-vmanage-html-3ZKh8d6x?
Cisco Catalyst SD-WAN Manager users are affected by the vulnerability identified as cisco-sa-vmanage-html-3ZKh8d6x.
What are the potential impacts of cisco-sa-vmanage-html-3ZKh8d6x?
The potential impacts of cisco-sa-vmanage-html-3ZKh8d6x include unauthorized HTML content injection that can lead to further exploitation.
Is cisco-sa-vmanage-html-3ZKh8d6x exploitable without authentication?
No, cisco-sa-vmanage-html-3ZKh8d6x is only exploitable by authenticated users, which increases the risk for compromised accounts.