CVE-2014-3315
Cisco Unified Communications Manager - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in viewfilecontents.do in the Dialed Number Analyzer (DNA) component in Cisco Unified Communications Manager allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCup76308.
References (5)
Scores
EPSS
0.0036
EPSS Percentile
57.7%
Details
CWE
CWE-79
Status
published
Products (3)
cisco/unified_communications_manager
cisco/unified_communications_manager
n/a/n/a
Published
Jul 10, 2014
Tracked Since
Feb 18, 2026