CVE-2016-1451
MEDIUMCisco Meeting Server <1.9 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in the web-based management interface in Cisco Meeting Server (formerly Acano Conferencing Server) 1.7 through 1.9 allows remote attackers to inject arbitrary web script or HTML via crafted parameters, aka Bug ID CSCva19922.
Scores
CVSS v3
6.1
EPSS
0.0025
EPSS Percentile
48.1%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Classification
CWE
CWE-79
Status
draft
Affected Products (3)
cisco/meeting_server
cisco/meeting_server
cisco/meeting_server
Timeline
Published
Jul 15, 2016
Tracked Since
Feb 18, 2026