CVE-2014-8018

Multiple cross-site scripting (XSS) vulnerabilities in Business Voice Services Manager (BVSM) pages in the Application Software in Cisco Unified Communications Domain Manager 8 allow remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug IDs CSCur19651, CSCur18555, CSCur19630, and CSCur19661.

Data: Cisco advisories · Cisco CSAF · NVD CVEs · NVD CPEs · CISA KEV · EPSS

SeverityMEDIUM
CVSS4.3
EPSS0.30% EPSS medium
CWECWE-79
KEV
Published
Modified

Products with public affected evidence

Product Advisory Affected evidence
Cisco Unified Communications Domain Manager Cisco-SA-20150106-CVE-2014-8018 structured affected CSAF product_status