CVE-2015-0696

Severity
4.3MEDIUM
EPSS
0.3%
top 50.32%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 15
Latest updateMay 17

Description

Cross-site scripting (XSS) vulnerability in the login page in Cisco TC Software before 7.1.0 on Cisco TelePresence Collaboration Desk and Room Endpoints devices allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCuq94977.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages1 packages

โ–ถNVDcisco/telepresence_tc_software14 versions+13

๐Ÿ”ดVulnerability Details

2
GHSA
GHSA-h6q2-vv4r-j9g4: Cross-site scripting (XSS) vulnerability in the login page in Cisco TC Software before 7โ†—2022-05-17
โ–ถ
CVEList
CVE-2015-0696: Cross-site scripting (XSS) vulnerability in the login page in Cisco TC Software before 7โ†—2015-04-15
โ–ถ

๐Ÿ“‹Vendor Advisories

1
Cisco
Multiple Cisco TelePresence Products Cross-Site Scripting Vulnerabilityโ†—2015-04-14
โ–ถ