Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestion detail

Dismissed
(no matching packages found)
Permalink CVE-2026-20198
4.8 MEDIUM
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Network (N)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): High (H)
  • User Interaction (UI): Required (R)
  • Scope (S): Changed (C)
  • Confidentiality (C): Low (L)
  • Integrity (I): Low (L)
  • Availability (A): None (N)
  • Modified Attack Vector (MAV): Network (N)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): High (H)
  • Modified User Interaction (MUI): Required (R)
  • Modified Confidentiality (MC): Low (L)
  • Modified Scope (MS): Changed (C)
  • Modified Integrity (MI): Low (L)
  • Modified Availability (MA): None (N)
created 1 month ago Activity log
  • Created & dismissed (no matching packages found) suggestion
Cisco Integrated Management Controller Cross-Site Scripting Vulnerability

A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to insufficient validation of user input. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the browser of the targeted user or access sensitive, browser-based information.

Affected products

Cisco Unified Computing System (Standalone)
  • ==4.0(4c)
  • ==4.0(2c)
  • ==3.1(2c)
  • ==4.2(3j)
  • ==4.0(2k)
  • ==4.0(4e)
  • ==4.2(3i)
  • ==4.3(2.240053)
  • ==3.1(3a)
  • ==4.3(6.260033)
  • ==4.3(2.250022)
  • ==4.2(3h)
  • ==3.1(3h)
  • ==4.1(1f)
  • ==4.3(6.250117)
  • ==4.2(3e)
  • ==6.0(2.260069)
  • ==4.2(3m)
  • ==4.0(2r)
  • ==4.0(4j)
  • ==4.0(4b)
  • ==4.1(2h)
  • ==4.0(2o)
  • ==4.2(1c)
  • ==4.2(3l)
  • ==3.1(2i)
  • ==4.3(5.240021)
  • ==4.1(2l)
  • ==4.3(6.260003)
  • ==4.0(1e)
  • ==6.0(1.250130)
  • ==4.3(2.250045)
  • ==4.0(2i)
  • ==4.1(1d)
  • ==4.0(2l)
  • ==3.1(3g)
  • ==4.0(2h)
  • ==4.3(6.250040)
  • ==6.0(1.250192)
  • ==4.1(3m)
  • ==4.3(2.240037)
  • ==4.3(2.240107)
  • ==4.1(2d)
  • ==4.0(2m)
  • ==3.1(3i)
  • ==4.1(3l)
  • ==4.0(4d)
  • ==4.2(1g)
  • ==4.2(1i)
  • ==3.1(3b)
  • ==3.1(3d)
  • ==4.3(6.260017)
  • ==4.1(2g)
  • ==4.0(2d)
  • ==4.0(2p)
  • ==4.3(6.250060)
  • ==3.1(2d)
  • ==4.2(1a)
  • ==4.3(2.240090)
  • ==4.1(3g)
  • ==4.1(2e)
  • ==4.2(2a)
  • ==4.3(1.230138)
  • ==4.3(6.250101)
  • ==4.0(1h)
  • ==4.1(1g)
  • ==4.0(1d)
  • ==4.2(1b)
  • ==4.3(5.250033)
  • ==4.3(4.242066)
  • ==4.3(4.240142)
  • ==4.1(3i)
  • ==4.1(2j)
  • ==4.3(2.230270)
  • ==4.3(2.240077)
  • ==4.0(4f)
  • ==4.0(2q)
  • ==4.2(2f)
  • ==4.0(4i)
  • ==4.0(4k)
  • ==4.3(5.250030)
  • ==4.1(3d)
  • ==4.3(6.250053)
  • ==4.1(2f)
  • ==4.3(5.250001)
  • ==3.1(2b)
  • ==4.0(2g)
  • ==6.0(1.250174)
  • ==4.3(5.250045)
  • ==4.1(1h)
  • ==4.3(2.260007)
  • ==4.2(1e)
  • ==4.3(5.250043)
  • ==4.3(2.240002)
  • ==4.3(4.241014)
  • ==4.2(3b)
  • ==4.0(1c)
  • ==4.1(3n)
  • ==4.1(3c)
  • ==4.2(3k)
  • ==4.3(3.240043)
  • ==4.1(2b)
  • ==4.0(4l)
  • ==4.2(3g)
  • ==4.2(3q)
  • ==4.3(3.240022)
  • ==4.3(2.250016)
  • ==4.3(4.242028)
  • ==4.2(1j)
  • ==3.1(1d)
  • ==4.0(1b)
  • ==4.3(4.240152)
  • ==4.0(1a)
  • ==4.0(2f)
  • ==4.3(1.230124)
  • ==4.3(4.241063)
  • ==4.3(2.250037)
  • ==4.2(3p)
  • ==4.3(4.252002)
  • ==4.0(2n)
  • ==4.3(6.250044)
  • ==4.1(2k)
  • ==4.0(1g)
  • ==4.1(3f)
  • ==4.3(4.242038)
  • ==4.3(2.250063)
  • ==4.1(1c)
  • ==4.1(2m)
  • ==3.1(2e)
  • ==4.0(4h)
  • ==4.2(1f)
  • ==6.0(1.250127)
  • ==6.0(1.250194)
  • ==4.3(4.252001)
  • ==3.1(3c)
  • ==6.0(1.250131)
  • ==4.3(1.230097)
  • ==3.1(3k)
  • ==4.2(2g)
  • ==4.1(2a)
  • ==4.1(3h)
  • ==4.2(3n)
  • ==4.2(3d)
  • ==4.3(2.240009)
  • ==4.2(3o)
  • ==4.0(4n)
  • ==4.3(2.230207)
  • ==4.3(2.250021)
  • ==4.3(6.250039)
  • ==3.1(3j)
  • ==4.3(3.240041)
  • ==4.0(4m)
  • ==6.0(2.260044)
  • ==4.1(3b)
  • ==3.1(2g)
  • ==4.0(1.240)
Cisco Enterprise NFV Infrastructure Software
  • ==4.9.4-ES8
  • ==4.8.1
  • ==4.14.1
  • ==4.4.3
  • ==4.12.3
  • ==3.12.3
  • ==3.8.1
  • ==3.6.3
  • ==3.12.1b
  • ==4.1.1
  • ==4.15.3
  • ==4.4.1
  • ==4.18.2a
  • ==4.12.7
  • ==3.9.1
  • ==4.9.6
  • ==4.7.1
  • ==4.10.1
  • ==4.9.4
  • ==4.1.2
  • ==4.2.1
  • ==4.6.3-FC4
  • ==3.5.1
  • ==4.15.1
  • ==4.15.4
  • ==4.12.1
  • ==3.11.2
  • ==4.4.2
  • ==3.3.1
  • ==4.8.2
  • ==4.9.1
  • ==4.18.1
  • ==4.16.1
  • ==4.13.1
  • ==4.9.4-ES9
  • ==4.12.5
  • ==4.5.1
  • ==3.12.1
  • ==3.11.3
  • ==3.9.2
  • ==3.4.1
  • ==3.6.1
  • ==4.6.3
  • ==3.12.1a
  • ==3.6.2
  • ==4.6.2
  • ==4.9.2
  • ==4.11.1
  • ==4.15.2
  • ==4.2.2
  • ==3.5.2
  • ==4.6.2-FC3
  • ==4.9.3
  • ==4.12.2
  • ==4.9.5
  • ==4.6.5-ES1
  • ==3.11.1
  • ==3.10.2
  • ==4.18.2
  • ==4.6.2-FC2
  • ==4.6.1
  • ==4.12.8
  • ==4.12.6
  • ==4.9.2-FC5
  • ==3.7.1
  • ==4.9.4-FC3
  • ==4.12.4
  • ==3.12.2
  • ==4.6.4
  • ==3.10.3
  • ==4.15.5
  • ==3.10.1
Cisco Unified Computing System E-Series Software (UCSE)
  • ==4.00
  • ==3.1.5
  • ==4.02
  • ==3.2.1
  • ==4.15.3
  • ==3.2.13.6
  • ==3.2.2
  • ==3.1.4
  • ==3.2.3
  • ==3.2.7
  • ==3.2.15.3
  • ==3.2.4
  • ==4.12.1
  • ==3.2.15
  • ==3.2.8
  • ==3.1.0
  • ==3.2.11.3
  • ==3.2.17.1
  • ==3.1.3
  • ==3.2.6
  • ==3.2.12.2
  • ==4.11.1
  • ==4.15.2
  • ==4.12.2
  • ==3.1.1
  • ==3.2.11.5
  • ==3.2.16.1
  • ==3.2.10
  • ==3.2.11.1
  • ==3.2.14
  • ==3.1.2