Cisco IP DECT 110 Firmware 5.1.2

CPE Details

Cisco IP DECT 110 Firmware 5.1.2
5.1.2
2023-11-28
16h25 +00:00
2023-11-28
16h25 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:cisco:ip_dect_110_firmware:5.1.2:*:*:*:*:*:*:*

Informations

Vendor

cisco

Product

ip_dect_110_firmware

Version

5.1.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-20265 2023-11-21 18h45 +00:00 A vulnerability in the web-based management interface of a small subset of Cisco IP Phones could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface on an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by persuading a user of an affected interface to view a page containing malicious HTML or script content. A successful exploit could allow the attacker to execute arbitrary script code in the context of the affected interface or access sensitive, browser-based information. To exploit this vulnerability, the attacker must have valid credentials to access the web-based management interface of the affected device.
5.5
Medium