Lucene search

K
cveMitreCVE-2009-1287
HistoryApr 13, 2009 - 4:30 p.m.

CVE-2009-1287

2009-04-1316:30:00
CWE-79
mitre
web.nvd.nist.gov
24
cisco
subscriber edge services manager
sesm
xss
vulnerability
remote attackers
web script
html
uri

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.9

Confidence

High

EPSS

0.002

Percentile

59.8%

Cross-site scripting (XSS) vulnerability in Cisco Subscriber Edge Services Manager (SESM) allows remote attackers to inject arbitrary web script or HTML via the URI. NOTE: some of these details are obtained from third party information.

Affected configurations

Nvd
Node
ciscosubscriber_edge_services_manager
VendorProductVersionCPE
ciscosubscriber_edge_services_manager*cpe:2.3:a:cisco:subscriber_edge_services_manager:*:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.9

Confidence

High

EPSS

0.002

Percentile

59.8%

Related for CVE-2009-1287