imPC@ndo IT

Tracker / CVE-2014-3329

CVE-2014-3329

Medium 4.3

Cross-site scripting (XSS) vulnerability in the web-server component in Cisco Prime Data Center Network Manager (DCNM) 6.3(2) and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCum86620.

Affected products and versions

cisco prime_data_center_network_manager
cisco prime_data_center_network_manager · … → 6.3\(2\)

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References