Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-82266
HistoryApr 08, 2022 - 12:00 a.m.

Cisco Secure Network Analytics Cross-Site Scripting Vulnerability

2022-04-0800:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
cisco
network analytics
cross-site scripting
vulnerability
web management interface
remote attacker
scripting code
sensitive information
continuous monitoring

EPSS

0.001

Percentile

29.2%

Cisco Secure Network Analytics is one of the most comprehensive visibility and network traffic analysis (Nta)/network detection and response (Ndr) solutions from Cisco. A cross-site scripting vulnerability exists in versions prior to Cisco Secure Network Analytics 2.1.1, which provides continuous, real-time monitoring and universal view of all network traffic. The vulnerability stems from inadequate validation of user-supplied input by the Web’s management interface. An unauthenticated, remote attacker could exploit the vulnerability to execute arbitrary scripting code or access sensitive browser-based information.

EPSS

0.001

Percentile

29.2%

Related for CNVD-2022-82266