Cisco Prime Infrastructure 2.2(2) does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCuw65846, a different vulnerability than CVE-2015-6434.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published: 2016-08-08T00:00:00

Updated: 2024-08-05T22:55:14.460Z

Reserved: 2016-01-04T00:00:00

Link: CVE-2016-1474

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2016-08-08T00:59:07.687

Modified: 2017-08-16T01:29:05.633

Link: CVE-2016-1474

cve-icon Redhat

No data.