VulnerAlert



APPS
BROWSER
CISCO
CLOUD
03-09-2025 13:02
Tags
#data
#xss
#web
#site
#form
#exploit
#cross-site
#cross
#admin
#add
#cloud
#cisco
#browser
#apps
#vulnerability
Descripción
Cisco Evolved Programmable Network Manager and Cisco Prime Infrastructure Stored Cross-Site Scripting Vulnerability A vulnerability in the web-based management interface of (EPNM) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against users affected system.<br><br> This exists because does not properly validate user-supplied input. An exploit this by inserting malicious code into specific data fields interface. A successful execute arbitrary script context or access sensitive, browser-based information. To vulnerability, must have valid administrative credentials.<br><br> Cisco has released software updates that address vulnerability. There are no workarounds vulnerability.<br><br> This advisory is available at following link:<br><a href="https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epnm-pi-stored-xss-XjQZsyCP">https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epnm-pi-stored-xss-XjQZsyCP</a><br><br> <br/>Security Impact Rating: Medium <br/>CVE: CVE-2025-20280 https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epnm-pi-stored-xss-XjQZsyCP CISCO
CVE-2025-20280
Link externo
Ver detalles

Fuente
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-epnm-pi-stored-xss-XjQZsyCP
Resultados similares
Coincidentes en almenos en 50% de los tags
05-09-2025 CVE-2024-22341
IBM Watson Query on Cloud Pak for Data 4.0.0 through 4.0.9, 4.5.0 through 4.5.3, 4.6.0 through ...
Ver información
05-09-2025
CISA Orders Immediate Patch of Critical Sitecore Vulnerability Under Active Exploitation Fede...
Ver información
Icons made by Freepik from www.flaticon.com
Este Proyecto fue cofinanciado por el Consejo Nacional de Ciencia y Tecnología (CONACYT) a través del PROINNOVA 2021/2023
Proyecto realizado por