CVE-2016-1485
published 2016-08-22CVE-2016-1485: Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine 1.3(0.876) allows remote attackers to inject arbitrary web script or HTML via…
PriorityP425medium6.1CVSS 3.0
AVNACLPRNUIRSCCLILAN
EPSS
1.42%
69.7th percentile
Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine 1.3(0.876) allows remote attackers to inject arbitrary web script or HTML via crafted parameters, aka Bug ID CSCva46497.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | identity_services_engine_admin_dashboard_page | — | — |
| cisco | identity_services_engine_software | — | — |
CVSS provenance
nvdv3.06.1MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
vendor_cisco4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Identity Services Engine Admin Dashboard Page Cross-Site Scripting Vulnerability
vendor_cisco·2016-08-17·CVSS 4.3
CVE-2016-1485 [MEDIUM] CWE-79 Cisco Identity Services Engine Admin Dashboard Page Cross-Site Scripting Vulnerability
Cisco Identity Services Engine Admin Dashboard Page Cross-Site Scripting Vulnerability
A vulnerability in the web framework code of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack.
The vulnerability is due to insufficient input validation of some parameters passed to the web server. An attacker could exploit this vulnerability by convincing the user to access a malicious link or by intercepting the user's request and injecting malicious code. An exploit could allow the attacker to execute arbitrary script code in the context of the affected site or allow the attacker to access sensitive browser-based information.
Cisco has released software updates that address this vulnerability. Workarounds that addres
Cisco
Cisco Identity Services Engine Admin Dashboard Page Cross-Site Scripting Vulnerability
vendor_cisco
CVE-2016-1485 Cisco Identity Services Engine Admin Dashboard Page Cross-Site Scripting Vulnerability
CVE-2016-1485: Cisco Identity Services Engine Admin Dashboard Page Cross-Site Scripting Vulnerability
A vulnerability in the web framework code of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. The vulnerability is due to insufficient input validation of some parameters passed to the web server. An attacker could exploit this vulnerability by convincing the user to access a malicious link or by intercepting the user's request and injecting malicious code. An exploit could allow the attacker to execute arbitrary script code in the context of the affected site or allow the attacker to access sensitive browser-based information. Cisco has released software updates that address this vulnerability.
CWE: CWE-79
GHSA
GHSA-f8wc-xjpj-8x72: Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine 1
ghsa_unreviewed·2022-05-17
CVE-2016-1485 [MEDIUM] CWE-79 GHSA-f8wc-xjpj-8x72: Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine 1
Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine 1.3(0.876) allows remote attackers to inject arbitrary web script or HTML via crafted parameters, aka Bug ID CSCva46497.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2016-1706 chromium-browser: sandbox escape in ppapi
bugzilla·2016-07-21·CVSS 9.6
CVE-2016-1706 [CRITICAL] CVE-2016-1706 chromium-browser: sandbox escape in ppapi
CVE-2016-1706 chromium-browser: sandbox escape in ppapi
A sandbox escape flaw was found in the PPAPI component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=610600
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-1709 chromium-browser: heap-buffer-overflow in sfntly
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-1709 [HIGH] CVE-2016-1709 chromium-browser: heap-buffer-overflow in sfntly
CVE-2016-1709 chromium-browser: heap-buffer-overflow in sfntly
A heap-buffer-overflow flaw was found in the sfntly component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=614934
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-5133 chromium-browser: origin confusion in proxy authentication
bugzilla·2016-07-21·CVSS 5.3
CVE-2016-5133 [MEDIUM] CVE-2016-5133 chromium-browser: origin confusion in proxy authentication
CVE-2016-5133 chromium-browser: origin confusion in proxy authentication
An origin confusion flaw was found in the proxy authentication component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=613626
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-1711 chromium-browser: same-origin bypass in blink
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-1711 [HIGH] CVE-2016-1711 chromium-browser: same-origin bypass in blink
CVE-2016-1711 chromium-browser: same-origin bypass in blink
A same-origin bypass flaw was found in the Blink component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=617495
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-5127 chromium-browser: use-after-free in blink
bugzilla·2016-07-21·CVSS 7.5
CVE-2016-5127 [HIGH] CVE-2016-5127 chromium-browser: use-after-free in blink
CVE-2016-5127 chromium-browser: use-after-free in blink
An use-after-free flaw was found in the Blink component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=618237
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-5131 libxml2: Use after free triggered by XPointer paths beginning with range-to
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-5131 [HIGH] CVE-2016-5131 libxml2: Use after free triggered by XPointer paths beginning with range-to
CVE-2016-5131 libxml2: Use after free triggered by XPointer paths beginning with range-to
An use-after-free flaw was found in the libxml component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=623378
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
---
Detailed analysis and explanation available in the upstream bug (currently closed) at:
https://bugzilla.gnome.org/show_bug.cgi?id=768428
Chromium used the following patch to fix this issue (not upstream yet):
https://codereview.chromium.org/2127493002
---
Bugzilla
CVE-2016-5132 chromium-browser: limited same-origin bypass in service workers
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-5132 [HIGH] CVE-2016-5132 chromium-browser: limited same-origin bypass in service workers
CVE-2016-5132 chromium-browser: limited same-origin bypass in service workers
A limited same-origin bypass flaw was found in the Service Workers component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=607543
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-5130 chromium-browser: url spoofing
bugzilla·2016-07-21·CVSS 6.5
CVE-2016-5130 [MEDIUM] CVE-2016-5130 chromium-browser: url spoofing
CVE-2016-5130 chromium-browser: url spoofing
The following flaw was identified in the Chromium browser: url spoofing.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=623319
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-5134 chromium-browser: url leakage via pac script
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-5134 [HIGH] CVE-2016-5134 chromium-browser: url leakage via pac script
CVE-2016-5134 chromium-browser: url leakage via pac script
The following flaw was identified in the Chromium browser: url leakage via pac script.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=593759
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-1708 chromium-browser: use-after-free in extensions
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-1708 [HIGH] CVE-2016-1708 chromium-browser: use-after-free in extensions
CVE-2016-1708 chromium-browser: use-after-free in extensions
An use-after-free flaw was found in the Extensions component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=613949
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-5129 chromium-browser: memory corruption in v8
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-5129 [HIGH] CVE-2016-5129 chromium-browser: memory corruption in v8
CVE-2016-5129 chromium-browser: memory corruption in v8
A memory corruption flaw was found in the V8 component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=620553
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-1710 chromium-browser: same-origin bypass in blink
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-1710 [HIGH] CVE-2016-1710 chromium-browser: same-origin bypass in blink
CVE-2016-1710 chromium-browser: same-origin bypass in blink
A same-origin bypass flaw was found in the Blink component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=616907
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-5135 chromium-browser: content-security-policy bypass
bugzilla·2016-07-21·CVSS 6.5
CVE-2016-5135 [MEDIUM] CVE-2016-5135 chromium-browser: content-security-policy bypass
CVE-2016-5135 chromium-browser: content-security-policy bypass
The following flaw was identified in the Chromium browser: content-security-policy bypass.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=605451
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-1705 chromium-browser: various fixes from internal audits
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-1705 [HIGH] CVE-2016-1705 chromium-browser: various fixes from internal audits
CVE-2016-1705 chromium-browser: various fixes from internal audits
Various fixes from internal audits, fuzzing and other initiatives.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=629852
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-5128 chromium-browser: same-origin bypass in v8
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-5128 [HIGH] CVE-2016-5128 chromium-browser: same-origin bypass in v8
CVE-2016-5128 chromium-browser: same-origin bypass in v8
A same-origin bypass flaw was found in the V8 component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=619166
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-5137 chromium-browser: history sniffing with hsts and csp
bugzilla·2016-07-21·CVSS 4.3
CVE-2016-5137 [MEDIUM] CVE-2016-5137 chromium-browser: history sniffing with hsts and csp
CVE-2016-5137 chromium-browser: history sniffing with hsts and csp
The following flaw was identified in the Chromium browser: history sniffing with hsts and csp.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=625945
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
Bugzilla
CVE-2016-5136 chromium-browser: use after free in extensions
bugzilla·2016-07-21·CVSS 8.8
CVE-2016-5136 [HIGH] CVE-2016-5136 chromium-browser: use after free in extensions
CVE-2016-5136 chromium-browser: use after free in extensions
An use after free flaw was found in the extensions component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=625393
External References:
https://googlechromereleases.blogspot.com/2016/07/stable-channel-update.html
Discussion:
This issue has been addressed in the following products:
Red Hat Enterprise Linux 6 Supplementary
Via RHSA-2016:1485 https://rhn.redhat.com/errata/RHSA-2016-1485.html
http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160817-isehttp://www.securityfocus.com/bid/92518http://www.securitytracker.com/id/1036647http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160817-isehttp://www.securityfocus.com/bid/92518http://www.securitytracker.com/id/1036647
2016-08-22
Published