CVE-2016-1354
MEDIUMCisco UCDM <8.1.1 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in Cisco Unified Communications Domain Manager (UCDM) 8.x before 8.1.1 allows remote attackers to inject arbitrary web script or HTML via crafted markup data, aka Bug ID CSCud41176.
Scores
CVSS v3
6.1
EPSS
0.0025
EPSS Percentile
48.1%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Classification
CWE
CWE-79
Status
draft
Affected Products (3)
cisco/unified_communications_domain_manager
cisco/unified_communications_domain_manager
cisco/unified_communications_domain_manager
Timeline
Published
Mar 03, 2016
Tracked Since
Feb 18, 2026