Vulnerability Bulletins |
Cisco Firepower Management Center Cross-Site Scripting Vulnerability |
|
| Affected software | Cisco |
|
A vulnerability in the web framework of Cisco Firepower Management Center could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web interface of an affected system.The vulnerability is due to insufficient input validation for some of the parameters that are passed to an affected web server. An attacker could exploit this vulnerability by persuading a user to access a malicious link or by intercepting a user request and injecting More info: http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20160817-firepowermc?vs_f=Cisco%20Security%20Advisory&vs_cat=Security%20Intelligence&vs_type=RSS&vs_p=Cisco%20Firepower%20Management%20Center%20Cross-Site%20Scripting%20Vul |
|






