Description
Cross-site scripting (XSS) vulnerability in Cisco IOS allows remote attackers to inject arbitrary web script or HTML, and execute IOS commands, via unspecified vectors, aka PSIRT-2022590358. NOTE: as of 20071016, the only disclosure is a vague pre-advisory with no actionable information. However, since it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes.
References (2)
Core 2
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_osvdb
http://osvdb.org/43742
Various Sources x_refsource_misc
http://www.irmplc.com/index.php/111-Vendor-Alerts
Scores
EPSS
0.0127
EPSS Percentile
66.9%
Details
CWE
CWE-79
Status
published
Products (1)
cisco/ios
Published
Oct 18, 2007
Tracked Since
Feb 18, 2026