Cisco Prime LAN Management Solution (LMS) does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCug77823.
References
Link | Resource |
---|---|
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5482 | Vendor Advisory |
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5482 | Vendor Advisory |
Configurations
History
21 Nov 2024, 01:57
Type | Values Removed | Values Added |
---|---|---|
References | () http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5482 - Vendor Advisory |
Information
Published : 2013-09-13 14:10
Updated : 2024-11-21 01:57
NVD link : CVE-2013-5482
Mitre link : CVE-2013-5482
CVE.ORG link : CVE-2013-5482
JSON object : View
Products Affected
cisco
- prime_lan_management_solution
CWE
CWE-264
Permissions, Privileges, and Access Controls