4.3
CVSSv2

CVE-2014-2116

Published: 04/04/2014 Updated: 16/09/2015
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cisco Emergency Responder (ER) 8.6 and previous versions allows remote malicious users to inject web pages and modify dynamic content via unspecified parameters, aka Bug ID CSCun37882.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

cisco emergency responder

Vendor Advisories

A vulnerability in the web interface of Cisco Emergency Responder could allow an unauthenticated, remote attacker to conduct web page injection attack against a user browser of the Cisco Emergency Responder The vulnerability is due to insufficient input validation of several parameters An attacker could exploit this vulnerability by convincing a ...