CVE-2014-3324
Multiple cross-site scripting (XSS) vulnerabilities in the login page in the administrative web interface in Cisco TelePresence Server Software 4.0(2.8) allow remote attackers to inject arbitrary web script or HTML via a crafted parameter, aka Bug ID CSCup90060.
View on NVDSeverity
N/A
EPSS
Probability of exploitation (next 30 days): 0.0056 (0.6%)
Percentile: 68.4%
EPSS: 2026-05-06
Affects
cisco:telepresence_server_softwareTechnical description
Multiple cross-site scripting (XSS) vulnerabilities in the login page in the administrative web interface in Cisco TelePresence Server Software 4.0(2.8) allow remote attackers to inject arbitrary web script or HTML via a crafted parameter, aka Bug ID CSCup90060.
Published: 7/26/2014, 11:11:57 AM
Last modified: 5/6/2026, 10:30:45 PM
References
- http://secunia.com/advisories/60456
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3324
- http://tools.cisco.com/security/center/viewAlert.x?alertId=35031
- http://www.securityfocus.com/bid/68885
- http://www.securitytracker.com/id/1030640
- https://exchange.xforce.ibmcloud.com/vulnerabilities/94847
- http://secunia.com/advisories/60456
- http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3324