Dismissed
(no matching packages found)
Permalink
CVE-2026-20198
4.8 MEDIUM
- CVSS version (CVSS): 3.1
- Attack Vector (AV): Network (N)
- Attack Complexity (AC): Low (L)
- Privileges Required (PR): High (H)
- User Interaction (UI): Required (R)
- Scope (S): Changed (C)
- Confidentiality (C): Low (L)
- Integrity (I): Low (L)
- Availability (A): None (N)
- Modified Attack Vector (MAV): Network (N)
- Modified Attack Complexity (MAC): Low (L)
- Modified Privileges Required (MPR): High (H)
- Modified User Interaction (MUI): Required (R)
- Modified Confidentiality (MC): Low (L)
- Modified Scope (MS): Changed (C)
- Modified Integrity (MI): Low (L)
- Modified Availability (MA): None (N)
Activity log
- Created & dismissed (no matching packages found) suggestion
Cisco Integrated Management Controller Cross-Site Scripting Vulnerability
A vulnerability in the web-based management interface of Cisco Integrated Management Controller (IMC) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface. This vulnerability is due to insufficient validation of user input. An attacker could exploit this vulnerability by persuading a user of an affected interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the browser of the targeted user or access sensitive, browser-based information.
References
Affected products
Cisco Unified Computing System (Standalone)
- ==4.0(4c)
- ==4.0(2c)
- ==3.1(2c)
- ==4.2(3j)
- ==4.0(2k)
- ==4.0(4e)
- ==4.2(3i)
- ==4.3(2.240053)
- ==3.1(3a)
- ==4.3(6.260033)
- ==4.3(2.250022)
- ==4.2(3h)
- ==3.1(3h)
- ==4.1(1f)
- ==4.3(6.250117)
- ==4.2(3e)
- ==6.0(2.260069)
- ==4.2(3m)
- ==4.0(2r)
- ==4.0(4j)
- ==4.0(4b)
- ==4.1(2h)
- ==4.0(2o)
- ==4.2(1c)
- ==4.2(3l)
- ==3.1(2i)
- ==4.3(5.240021)
- ==4.1(2l)
- ==4.3(6.260003)
- ==4.0(1e)
- ==6.0(1.250130)
- ==4.3(2.250045)
- ==4.0(2i)
- ==4.1(1d)
- ==4.0(2l)
- ==3.1(3g)
- ==4.0(2h)
- ==4.3(6.250040)
- ==6.0(1.250192)
- ==4.1(3m)
- ==4.3(2.240037)
- ==4.3(2.240107)
- ==4.1(2d)
- ==4.0(2m)
- ==3.1(3i)
- ==4.1(3l)
- ==4.0(4d)
- ==4.2(1g)
- ==4.2(1i)
- ==3.1(3b)
- ==3.1(3d)
- ==4.3(6.260017)
- ==4.1(2g)
- ==4.0(2d)
- ==4.0(2p)
- ==4.3(6.250060)
- ==3.1(2d)
- ==4.2(1a)
- ==4.3(2.240090)
- ==4.1(3g)
- ==4.1(2e)
- ==4.2(2a)
- ==4.3(1.230138)
- ==4.3(6.250101)
- ==4.0(1h)
- ==4.1(1g)
- ==4.0(1d)
- ==4.2(1b)
- ==4.3(5.250033)
- ==4.3(4.242066)
- ==4.3(4.240142)
- ==4.1(3i)
- ==4.1(2j)
- ==4.3(2.230270)
- ==4.3(2.240077)
- ==4.0(4f)
- ==4.0(2q)
- ==4.2(2f)
- ==4.0(4i)
- ==4.0(4k)
- ==4.3(5.250030)
- ==4.1(3d)
- ==4.3(6.250053)
- ==4.1(2f)
- ==4.3(5.250001)
- ==3.1(2b)
- ==4.0(2g)
- ==6.0(1.250174)
- ==4.3(5.250045)
- ==4.1(1h)
- ==4.3(2.260007)
- ==4.2(1e)
- ==4.3(5.250043)
- ==4.3(2.240002)
- ==4.3(4.241014)
- ==4.2(3b)
- ==4.0(1c)
- ==4.1(3n)
- ==4.1(3c)
- ==4.2(3k)
- ==4.3(3.240043)
- ==4.1(2b)
- ==4.0(4l)
- ==4.2(3g)
- ==4.2(3q)
- ==4.3(3.240022)
- ==4.3(2.250016)
- ==4.3(4.242028)
- ==4.2(1j)
- ==3.1(1d)
- ==4.0(1b)
- ==4.3(4.240152)
- ==4.0(1a)
- ==4.0(2f)
- ==4.3(1.230124)
- ==4.3(4.241063)
- ==4.3(2.250037)
- ==4.2(3p)
- ==4.3(4.252002)
- ==4.0(2n)
- ==4.3(6.250044)
- ==4.1(2k)
- ==4.0(1g)
- ==4.1(3f)
- ==4.3(4.242038)
- ==4.3(2.250063)
- ==4.1(1c)
- ==4.1(2m)
- ==3.1(2e)
- ==4.0(4h)
- ==4.2(1f)
- ==6.0(1.250127)
- ==6.0(1.250194)
- ==4.3(4.252001)
- ==3.1(3c)
- ==6.0(1.250131)
- ==4.3(1.230097)
- ==3.1(3k)
- ==4.2(2g)
- ==4.1(2a)
- ==4.1(3h)
- ==4.2(3n)
- ==4.2(3d)
- ==4.3(2.240009)
- ==4.2(3o)
- ==4.0(4n)
- ==4.3(2.230207)
- ==4.3(2.250021)
- ==4.3(6.250039)
- ==3.1(3j)
- ==4.3(3.240041)
- ==4.0(4m)
- ==6.0(2.260044)
- ==4.1(3b)
- ==3.1(2g)
- ==4.0(1.240)
Cisco Enterprise NFV Infrastructure Software
- ==4.9.4-ES8
- ==4.8.1
- ==4.14.1
- ==4.4.3
- ==4.12.3
- ==3.12.3
- ==3.8.1
- ==3.6.3
- ==3.12.1b
- ==4.1.1
- ==4.15.3
- ==4.4.1
- ==4.18.2a
- ==4.12.7
- ==3.9.1
- ==4.9.6
- ==4.7.1
- ==4.10.1
- ==4.9.4
- ==4.1.2
- ==4.2.1
- ==4.6.3-FC4
- ==3.5.1
- ==4.15.1
- ==4.15.4
- ==4.12.1
- ==3.11.2
- ==4.4.2
- ==3.3.1
- ==4.8.2
- ==4.9.1
- ==4.18.1
- ==4.16.1
- ==4.13.1
- ==4.9.4-ES9
- ==4.12.5
- ==4.5.1
- ==3.12.1
- ==3.11.3
- ==3.9.2
- ==3.4.1
- ==3.6.1
- ==4.6.3
- ==3.12.1a
- ==3.6.2
- ==4.6.2
- ==4.9.2
- ==4.11.1
- ==4.15.2
- ==4.2.2
- ==3.5.2
- ==4.6.2-FC3
- ==4.9.3
- ==4.12.2
- ==4.9.5
- ==4.6.5-ES1
- ==3.11.1
- ==3.10.2
- ==4.18.2
- ==4.6.2-FC2
- ==4.6.1
- ==4.12.8
- ==4.12.6
- ==4.9.2-FC5
- ==3.7.1
- ==4.9.4-FC3
- ==4.12.4
- ==3.12.2
- ==4.6.4
- ==3.10.3
- ==4.15.5
- ==3.10.1
Cisco Unified Computing System E-Series Software (UCSE)
- ==4.00
- ==3.1.5
- ==4.02
- ==3.2.1
- ==4.15.3
- ==3.2.13.6
- ==3.2.2
- ==3.1.4
- ==3.2.3
- ==3.2.7
- ==3.2.15.3
- ==3.2.4
- ==4.12.1
- ==3.2.15
- ==3.2.8
- ==3.1.0
- ==3.2.11.3
- ==3.2.17.1
- ==3.1.3
- ==3.2.6
- ==3.2.12.2
- ==4.11.1
- ==4.15.2
- ==4.12.2
- ==3.1.1
- ==3.2.11.5
- ==3.2.16.1
- ==3.2.10
- ==3.2.11.1
- ==3.2.14
- ==3.1.2