CVE-2016-1294

Cross-site scripting (XSS) vulnerability in the Management Center in Cisco FireSIGHT System Software 6.0.1 allows remote attackers to inject arbitrary web script or HTML via a crafted cookie, aka Bug ID CSCuw89094.

Data: Cisco advisories · Cisco CSAF · NVD CVEs · NVD CPEs · CISA KEV · EPSS

SeverityMEDIUM
CVSS6.1
EPSS0.23% EPSS low
CWECWE-79
KEV
Published
Modified

Products with public affected evidence

Product Advisory Affected evidence
Cisco Firepower System Software cisco-sa-20160115-fmc1 structured affected CSAF product_status