PT-2014-8387 · Cisco · Business Voice Services Manager+1

Publicado

2014-12-22

·

Atualizado

2017-01-03

·

CVE-2014-8018

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Cisco Unified Communications Domain Manager version 8
Description The issue concerns multiple cross-site scripting (XSS) vulnerabilities in Business Voice Services Manager (BVSM) pages. These vulnerabilities allow remote attackers to inject arbitrary web script or HTML via a crafted URL.
Recommendations For Cisco Unified Communications Domain Manager version 8, update the software to a version that includes the fixes for Bug IDs CSCur19651, CSCur18555, CSCur19630, and CSCur19661 to resolve the issue.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2014-8018

Produtos afetados

Business Voice Services Manager
Cisco Unified Communications Domain Manager