Vulnslist

Cisco vulnerabilities by product, model, software, and advisory.

CVE-2015-6372

Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Firepower Extensible Operating System 1.1(1.160) on Firepower 9000 devices allows remote attackers to inject arbitrary web script or HTML via a crafted value, aka Bug ID CSCux10614.

SeverityMEDIUM
CVSS4.3
CWECWE-79
KEV
Published
Modified

Related Products

Product Advisory Evidence
Firepower Extensible Operating System cisco-sa-20151117-firepower2 Cisco OpenVuln
Cisco Firepower Extensible Operating System cisco-sa-20151117-firepower2 Cisco OpenVuln