Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2015-0696

Опубликовано: 15 апр. 2015
Источник: nvd
CVSS2: 4.3
EPSS Низкий

Описание

Cross-site scripting (XSS) vulnerability in the login page in Cisco TC Software before 7.1.0 on Cisco TelePresence Collaboration Desk and Room Endpoints devices allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCuq94977.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:cisco:telepresence_tc_software:6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.0.0-cucm:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.0.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.0.1-cucm:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.0.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.0_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.1.0:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.1.0-cucm:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.1.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.1.1-cucm:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.1.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.1.2-cucm:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.1_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:telepresence_tc_software:6.3_base:*:*:*:*:*:*:*

EPSS

Процентиль: 49%
0.00263
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79

Связанные уязвимости

github
больше 3 лет назад

Cross-site scripting (XSS) vulnerability in the login page in Cisco TC Software before 7.1.0 on Cisco TelePresence Collaboration Desk and Room Endpoints devices allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCuq94977.

EPSS

Процентиль: 49%
0.00263
Низкий

4.3 Medium

CVSS2

Дефекты

CWE-79