cbcvebase.
CVE-2017-3838
published 2017-02-22

CVE-2017-3838: A vulnerability in Cisco Secure Access Control System (ACS) could allow an unauthenticated, remote attacker to conduct a DOM-based cross-site scripting (XSS)…

medium6.1CVSS 3.0
AVNACLPRNUIRSCCLILAN
A vulnerability in Cisco Secure Access Control System (ACS) could allow an unauthenticated, remote attacker to conduct a DOM-based cross-site scripting (XSS) attack against the user of the web interface of the affected system. More Information: CSCvc04838. Known Affected Releases: 5.8(2.5).

Affected

2 ranges
VendorProductVersion rangeFixed in
ciscosecure
ciscosecure_access_control_system