Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Cisco CallManager Search Form Cross Site Scripting Vulnerability

An attacker must entice an unsuspecting victim into following a malicious URI to exploit this issue.

The following proof-of-concept URI is available:

https://www.example.com/CCMAdmin/serverlist.asp?findBy=servername&match=begins&pattern=[xss]







 

Privacy Statement
Copyright 2009, SecurityFocus