A vulnerability in the display of email messages in the Messages in Quarantine (MIQ) view in Cisco AsyncOS for Cisco Email Security Appliance (ESA) could allow an unauthenticated, remote attacker to cause a user to click a malicious link in the MIQ view. The malicious link could be used to facilitate a cross-site scripting (XSS) or HTML injection attack. More Information: CSCuz02235. Known Affected Releases: 8.0.2-069. Known Fixed Releases: 9.1.1-038 9.7.2-047.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2016-10-28T10:00:00
Updated: 2024-08-05T22:55:14.323Z
Reserved: 2016-01-04T00:00:00
Link: CVE-2016-1423
Vulnrichment
No data.
NVD
Status : Modified
Published: 2016-10-28T10:59:00.213
Modified: 2024-11-21T02:46:24.997
Link: CVE-2016-1423
Redhat
No data.