Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The web interface in Cisco Prime Infrastructure 2.1 and earlier does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCuj42444.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco Prime Infrastructure 安全漏洞
Vulnerability Description
Cisco Prime Infrastructure(PI)是美国思科(Cisco)公司的一套通过Cisco Prime LAN Management Solution(LMS)和Cisco Prime Network Control System(NCS)技术进行无线管理的解决方案。 Cisco PI 2.1及之前版本的Web界面中存在安全漏洞,该漏洞源于程序没有正确限制IFRAME元素的使用。远程攻击者可借助特制的Web站点利用该漏洞实施点击劫持攻击。
CVSS Information
N/A
Vulnerability Type
N/A