Unknown
CVE-2016-9202
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)Unknown
Unknown
Unknown
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
A vulnerability in the web-based management interface of Cisco Email Security Appliance (ESA) Switches could allow an unauthenticated, remote attacker to conduct a persistent cross-site scripting (XSS) attack against a user of the affected interface on an affected device. More Information: CSCvb37346. Known Affected Releases: 9.1.1-036 9.7.1-066.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- email security appliance 9.1.1-036,
- email security appliance 9.1.2-023,
- email security appliance 9.1.2-028,
- email security appliance 9.1.2-036,
- email security appliance 9.4.0,
- email security appliance 9.4.4-000,
- email security appliance 9.5.0-000,
- email security appliance 9.5.0-201,
- email security appliance 9.6.0-000,
- email security appliance 9.6.0-042,
- email security appliance 9.6.0-051,
- email security appliance 9.7.0-125,
- email security appliance 9.7.1-066,
- email security appliance 9.7.2-046,
- email security appliance 9.7.2-047,
- email security appliance 9.7.2-054
References
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: