Description
Cisco Prime LAN Management Solution (LMS) does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCug77823.
References (1)
Core 1
Core References
Vendor Advisory vendor-advisory
x_refsource_cisco
http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-5482
Scores
EPSS
0.0117
EPSS Percentile
64.1%
Details
CWE
CWE-264
Status
published
Products (1)
cisco/prime_lan_management_solution
Published
Sep 13, 2013
Tracked Since
Feb 18, 2026