CVE-2013-1114

Cisco Unity Express <8.0 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unity Express before 8.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, aka Bug ID CSCud87527.

Exploits (1)

exploitdb WORKING POC
webappsjsp
https://www.exploit-db.com/exploits/24449

Scores

EPSS 0.1338
EPSS Percentile 94.1%

Details

CWE
CWE-79
Status published
Products (18)
cisco/unity_express_software < 7.4
cisco/unity_express_software
cisco/unity_express_software
cisco/unity_express_software
cisco/unity_express_software
cisco/unity_express_software
cisco/unity_express_software
cisco/unity_express_software
cisco/unity_express_software
cisco/unity_express_software
... and 8 more
Published Feb 13, 2013
Tracked Since Feb 18, 2026