MEDIUM
Cisco Prime Infrastructure 2.2(2) does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCuw65846, a different vulnerability than CVE-2015-6434
Published Aug 8, 2016
4.3
MEDIUMCVSS 3.0
EPSS 1.35%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.