← Back

CVE-2012-6007

nvd nist
Published: Dec 19, 2012Modified: Apr 29, 2026

JSON object

Loading...
4.3
Vector
AV:N/AC:M/Au:N/C:N/I:P/A:N
Exploitability: 8.6 / Impact: 2.9
Source: NVD

Description

Cross-site scripting (XSS) vulnerability in screens/base/web_auth_custom.html on Cisco Wireless LAN Controller (WLC) devices with software 7.2.110.0 allows remote authenticated users to inject arbitrary web script or HTML via the headline parameter, aka Bug ID CSCud65187, a different vulnerability than CVE-2012-5992.

Affected (9)

9 products
Wireless Lan Controller Software
2000 Wireless Lan Controller
2100 Wireless Lan Controller
2500 Wireless Lan Controller
4100 Wireless Lan Controller
4400 Wireless Lan Controller
5500 Wireless Lan Controller
7500 Wireless Lan Controller
8500 Wireless Lan Controller
Configuration A
9 vulnerable

Timeline

No history available yet.