NA

CVE-2023-20208

Published: 21/11/2023 Updated: 25/01/2024
CVSS v3 Base Score: 4.8 | Impact Score: 2.7 | Exploitability Score: 1.7
VMScore: 0

Vulnerability Summary

A vulnerability in the web-based management interface of Cisco ISE could allow an authenticated, remote malicious user to conduct an XSS attack against a user of the web-based management interface of an affected device.

Vulnerable Product Search on Vulmon Subscribe to Product

cisco identity services engine 3.0.0

cisco identity services engine 3.1

cisco identity services engine 3.2

Vendor Advisories

Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow an authenticated, remote attacker to upload malicious files to the web root of the application or conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device To exploit these vulnerabilities, an attacker must have ...