CVE-2014-0680
Cisco Identity Services Engine - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in the HTTP control interface in the NAC Web Agent component in Cisco Identity Services Engine (ISE) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCui15038.
References (6)
Scores
EPSS
0.0053
EPSS Percentile
67.1%
Details
CWE
CWE-79
Status
published
Products (2)
cisco/identity_services_engine
n/a/n/a
Published
Jan 29, 2014
Tracked Since
Feb 18, 2026