Cisco Prime LAN Management Solution (LMS) does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCug77823.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5482 | Vendor Advisory |
Configurations
History
No history.
Information
Published : 2013-09-13 14:10
Updated : 2024-02-04 18:16
NVD link : CVE-2013-5482
Mitre link : CVE-2013-5482
CVE.ORG link : CVE-2013-5482
JSON object : View
Products Affected
cisco
- prime_lan_management_solution
CWE
CWE-264
Permissions, Privileges, and Access Controls