Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A vulnerability in the web-based management interface of Cisco Web Security Appliance (WSA) could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. Affected Products: virtual and hardware versions of Cisco Web Security Appliance (WSA). More Information: CSCvd88865. Known Affected Releases: 10.1.0-204.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cisco Web Security Appliance 跨站脚本漏洞
Vulnerability Description
Cisco Web Security Appliance(WSA)是美国思科(Cisco)公司的一套Web安全设备。该设备提供基于SaaS的访问控制、实时网络报告和追踪、制定安全策略等功能。 Cisco WSA中的基于Web的管理界面存在跨站脚本漏洞,该漏洞源于程序没有充分的过滤用户提交的输入。远程攻击者可通过诱使界面用户点击特制连接利用该漏洞在界面上下文中执行任意脚本或获取基于浏览器的敏感信息。
CVSS Information
N/A
Vulnerability Type
N/A