Arbitrary Code Injection in Cisco Unified MeetingPlace 8.6(1.9) Administrative Web Interface

Arbitrary Code Injection in Cisco Unified MeetingPlace 8.6(1.9) Administrative Web Interface

CVE-2015-0703 · MEDIUM Severity

AV:N/AC:M/AU:N/C:N/I:P/A:N

Cross-site scripting (XSS) vulnerability in the administrative web interface in Cisco Unified MeetingPlace 8.6(1.9) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCus95857.

Learn more about our Cis Benchmark Audit For Cisco.