Lucene search

K
nvd[email protected]NVD:CVE-2015-0634
HistoryMay 15, 2015 - 1:59 a.m.

CVE-2015-0634

2015-05-1501:59:01
CWE-79
web.nvd.nist.gov
8

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

43.6%

Cross-site scripting (XSS) vulnerability in the administrative interface in Cisco WebEx Meetings Server 2.5 and 2.5.0.997 allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCuq86310.

Affected configurations

Nvd
Node
ciscowebex_meetings_serverMatch2.5
OR
ciscowebex_meetings_serverMatch2.5.0.997
VendorProductVersionCPE
ciscowebex_meetings_server2.5cpe:2.3:a:cisco:webex_meetings_server:2.5:*:*:*:*:*:*:*
ciscowebex_meetings_server2.5.0.997cpe:2.3:a:cisco:webex_meetings_server:2.5.0.997:*:*:*:*:*:*:*

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:N/I:P/A:N

AI Score

5.6

Confidence

High

EPSS

0.001

Percentile

43.6%

Related for NVD:CVE-2015-0634