A cross-site scripting (XSS) filter bypass vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to conduct XSS attacks against a user of an affected device. More Information: CSCvc21620. Known Affected Releases: 10.5(2.14076.1). Known Fixed Releases: 12.0(0.98000.641) 12.0(0.98000.500) 12.0(0.98000.219).
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: cisco
Published: 2017-03-17T22:00:00
Updated: 2024-08-05T14:39:41.311Z
Reserved: 2016-12-21T00:00:00
Link: CVE-2017-3872
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-03-17T22:59:00.407
Modified: 2024-11-21T03:26:17.250
Link: CVE-2017-3872
Redhat
No data.