Cross-site scripting (XSS) vulnerability in CSCOnm/servlet/com.cisco.nm.help.ServerHelpEngine in the Common Services Device Center in Cisco Unified Operations Manager (CUOM) before 8.6 allows remote attackers to inject arbitrary web script or HTML via the tag parameter, aka Bug ID CSCto12712.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2011-05-20 15:55
Updated : 2017-08-16 18:33
NVD link : CVE-2011-0962
Mitre link : CVE-2011-0962
JSON object : View
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
Products Affected
cisco
- unified_operations_manager