CVE-2015-4206

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
15/12/2015
Last modified:
12/04/2025

Description

Cisco Unified Communications Manager (UCM) 8.0 through 8.6 allows remote attackers to bypass an XSS protection mechanism via a crafted parameter, aka Bug ID CSCuu15266.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cisco:unified_communications_manager:8.0\(2c\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:8.0\(3\):*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:8.0_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:8.5.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:8.5_base:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:8.6.1:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:8.6.2:*:*:*:*:*:*:*
cpe:2.3:a:cisco:unified_communications_manager:8.6_base:*:*:*:*:*:*:*