Cisco Prime LAN Management Solution (LMS) does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCug77823.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5482 | Vendor Advisory |
Configurations
Information
Published : 2013-09-13 07:10
Updated : 2013-09-13 11:06
NVD link : CVE-2013-5482
Mitre link : CVE-2013-5482
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
cisco
- prime_lan_management_solution