CVE
- Id
- 100692
- CVE No.
- CVE-2017-3872
- Status
- Candidate
- Description
- A cross-site scripting (XSS) filter bypass vulnerability in the web-based management interface of Cisco Unified Communications Manager could allow an unauthenticated, remote attacker to conduct XSS attacks against a user of an affected device. More Information: CSCvc21620. Known Affected Releases: 10.5(2.14076.1). Known Fixed Releases: 12.0(0.98000.641) 12.0(0.98000.500) 12.0(0.98000.219).
- Phase
- Assigned (20161221)
- Votes
- None (candidate not yet proposed)
- Comments