vendor:
Cisco Unified Operations Manager
by:
Unknown
7.5
CVSS
HIGH
Cross-Site Scripting
79
CWE
Product Name: Cisco Unified Operations Manager
Affected Version From: Prior to 8.6
Affected Version To: Not mentioned
Patch Exists: NO
Related CWE: Not mentioned
CPE: a:cisco:unified_operations_manager
Platforms Tested:
Unknown
Cisco Unified Operations Manager Multiple Cross-Site Scripting Vulnerabilities
The Cisco Unified Operations Manager is prone to multiple cross-site scripting vulnerabilities due to improper input sanitization. An attacker can exploit these vulnerabilities to execute arbitrary script code in the browser of a targeted user, potentially leading to the theft of authentication credentials and other malicious activities.
Mitigation:
Cisco recommends applying the appropriate updates or patches to mitigate these vulnerabilities. It is advised to follow the recommendations provided by the vendor.