CVE-2016-1485
MEDIUMCisco Identity Services Engine <1.3(0.876) - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in Cisco Identity Services Engine 1.3(0.876) allows remote attackers to inject arbitrary web script or HTML via crafted parameters, aka Bug ID CSCva46497.
Scores
CVSS v3
6.1
EPSS
0.0030
EPSS Percentile
52.6%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Classification
CWE
CWE-79
Status
published
Affected Products (2)
cisco/identity_services_engine_software
n/a/n/a
Timeline
Published
Aug 22, 2016
Tracked Since
Feb 18, 2026