CVE-2016-1354

Severity
6.1MEDIUM
EPSS
0.3%
top 51.63%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMar 3
Latest updateMay 17

Description

Cross-site scripting (XSS) vulnerability in Cisco Unified Communications Domain Manager (UCDM) 8.x before 8.1.1 allows remote attackers to inject arbitrary web script or HTML via crafted markup data, aka Bug ID CSCud41176.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

Affected Packages1 packages

🔴Vulnerability Details

2
GHSA
GHSA-mvh3-4pvm-6fvj: Cross-site scripting (XSS) vulnerability in Cisco Unified Communications Domain Manager (UCDM) 82022-05-17
CVEList
CVE-2016-1354: Cross-site scripting (XSS) vulnerability in Cisco Unified Communications Domain Manager (UCDM) 82016-03-03

📋Vendor Advisories

1
Cisco
Cisco Unified Communications Domain Manager Cross-Site Scripting Vulnerability2016-03-02
CVE-2016-1354 (MEDIUM CVSS 6.1) | Cross-site scripting (XSS) vulnerab | cvebase.io