Vulnerability Details CVE-2014-3325
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unified Customer Voice Portal (CVP) allow remote attackers to inject arbitrary web script or HTML via a crafted parameter, aka Bug IDs CSCuh61711, CSCuh61720, CSCuh61723, CSCuh61726, CSCuh61727, CSCuh61731, and CSCuh61733.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 52.6%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2014-3325
-
cpe:2.3:a:cisco:unified_customer_voice_portal:10.5
-
cpe:2.3:a:cisco:unified_customer_voice_portal:10.5(1)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:11.0
-
cpe:2.3:a:cisco:unified_customer_voice_portal:11.0(1)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:11.5
-
cpe:2.3:a:cisco:unified_customer_voice_portal:11.5(1)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:11.6
-
cpe:2.3:a:cisco:unified_customer_voice_portal:11.6(1)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:11.6(1)_es-11
-
cpe:2.3:a:cisco:unified_customer_voice_portal:11.6(2)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:12.0
-
cpe:2.3:a:cisco:unified_customer_voice_portal:12.0(1)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:12.0(1)_es-7
-
cpe:2.3:a:cisco:unified_customer_voice_portal:12.5
-
cpe:2.3:a:cisco:unified_customer_voice_portal:12.5(1)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:12.6(1)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:3.0
-
cpe:2.3:a:cisco:unified_customer_voice_portal:3.6(10)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:4.0
-
cpe:2.3:a:cisco:unified_customer_voice_portal:4.0(2)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:4.1
-
cpe:2.3:a:cisco:unified_customer_voice_portal:7.0
-
cpe:2.3:a:cisco:unified_customer_voice_portal:7.0(2)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:8.0(1)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:8.5(1)
-
cpe:2.3:a:cisco:unified_customer_voice_portal:9.0
-
cpe:2.3:a:cisco:unified_customer_voice_portal:9.0(1)