PT-2016-7702 · Cisco · Cisco Unified Communications Manager

Publicado

2016-12-14

·

Atualizado

2016-12-22

·

CVE-2016-9206

CVSS v3.1

6.1

Média

VetorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Cisco Unified Communications Manager (CUCM) versions 11.5(1.10000.6) through 11.5(1.11007.2)
Description A vulnerability in the ccmadmin page of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to conduct reflected cross-site scripting (XSS) attacks.
Recommendations For versions 11.5(1.10000.6) through 11.5(1.11007.2), update to version 11.5(1.12900.7) or later to resolve the issue. For versions prior to 12.0, update to version 12.0(0.98000.155) or later to resolve the issue.

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-9206

Produtos afetados

Cisco Unified Communications Manager