← Back

CVE-2023-20127

nvd nist
Published: Apr 5, 2023Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (EPNM) could allow a remote attacker to obtain privileged information and conduct cross-site scripting (XSS) and cross-site request forgery (CSRF) attacks. For more information about these vulnerabilities, see the Details section of this advisory.

Affected (6)

1 product
Prime Infrastructure
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Cisco
Up to 3.7
From 3.10 to 3.10.2
Version 3.8.1
Version 3.8
Version 3.9.1
Version 3.9

Timeline

No history available yet.