Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Ip_dect_110_firmware
(Cisco)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 1 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2023-11-21 | CVE-2023-20265 | A vulnerability in the web-based management interface of a small subset of Cisco IP Phones could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface on an affected device. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by persuading a user of an affected interface to view a page containing malicious HTML or script content. A successful exploit... | Ip_dect_110_firmware, Ip_dect_210_firmware, Unified_ip_phone_6901_firmware, Unified_sip_phone_3905_firmware | 5.4 |