Cross-site scripting (XSS) vulnerability in webacs/QuickSearchAction.do in the search feature in the web interface in Cisco Wireless Control System (WCS) before 6.0(194.0) and 7.x before 7.0.164 allows remote attackers to inject arbitrary web script or HTML via the searchText parameter, aka Bug ID CSCtf14288.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2010-08-09T20:00:00

Updated: 2018-10-10T18:57:01

Reserved: 2010-08-09T00:00:00


Link: CVE-2010-2986

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2010-08-10T12:23:06.270

Modified: 2018-10-10T20:00:40.437


Link: CVE-2010-2986

JSON object: View

cve-icon Redhat Information

No data.

CWE