Back

MEDIUM

Cisco Firepower Management Center Software Cross-Site Scripting Vulnerability

Published May 3, 2022

Description

A vulnerability in the web-based management interface of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting attack. This vulnerability is due to improper validation of user-supplied input to the web-based management interface. An attacker could exploit this vulnerability by convincing a user to click a link designed to pass malicious input to the interface. A successful exploit could allow the attacker to conduct cross-site scripting attacks and gain access to sensitive browser-based information.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner cisco
Published May 3, 2022
Updated Nov 6, 2024
Reserved Nov 2, 2021

CISA Vulnrichment

Updated Nov 6, 2024

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner cisco
Published May 3, 2022
Updated Nov 6, 2024

GitHub

No data