CVE-2006-3289

Cross-site scripting (XSS) vulnerability in the login page of the HTTP interface for the Cisco Wireless Control System (WCS) for Linux and Windows before 3.2(51) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving a "malicious URL".

Data: Cisco advisories · Cisco CSAF · NVD CVEs · NVD CPEs · CISA KEV · EPSS

SeverityLOW
CVSS2.6
EPSS-
CWENVD-CWE-Other
KEV
Published
Modified

Products with public affected evidence

Product Advisory Affected evidence
Cisco Wireless Control System (WCS) Software cisco-sa-20060628-wcs structured affected CSAF product_status