CVE-2017-6749

Summary

A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. Affected Products: virtual and hardware versions of Cisco Web Security Appliance (WSA). More Information: CSCvd88865. Known Affected Releases: 10.1.0-204.

Affected Software

VendorProductVersion RangeStatus
n/aCisco Web Security ApplianceCisco Web Security Applianceaffected

Weaknesses

  • Stored Cross-Site Scripting Vulnerability

ADP Enrichment

CVE Program Container

Additional References

References