A vulnerability in the web-based management interface of Cisco BroadWorks Application Delivery Platform Software could allow an unauthenticated, remote attacker to conduct a cross-site scripting attack against a user of the interface. This vulnerability exists because the web-based management interface does not properly validate user-supplied input. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive browser-based information.
2022-08-10T09:15:08.703
2024-11-21T06:43:43.247
Modified
CVSSv3.1: 6.1 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | cisco | broadworks | < 22.0.2022.06 | Yes |
Application | cisco | broadworks | < 23.0.2022.06 | Yes |
Application | cisco | broadworks | < 24.0.2022.06 | Yes |