CVE-2012-0340
Cisco IronPort Encryption <6.5.3 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in the management interface on the Cisco IronPort Encryption Appliance with software before 6.5.3 allows remote attackers to inject arbitrary web script or HTML via the header parameter to the default URI under admin/, aka bug ID 72410.
Scores
EPSS
0.0014
EPSS Percentile
33.9%
Classification
CWE
CWE-79
Status
published
Affected Products (29)
cisco/ironport_encryption_appliance
< 6.5.2.2
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
cisco/ironport_encryption_appliance
... and 14 more
Timeline
Published
Feb 13, 2012
Tracked Since
Feb 18, 2026