Update CVE-2019-1680.json

This commit is contained in:
Omar Santos 2019-02-07 14:00:52 -05:00 committed by GitHub
parent 505aeea235
commit 6b42d99829
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23

View File

@ -17,6 +17,7 @@
"version": {
"version_data": [
{
"affected": "<",
"version_value": "3.0.9"
}
]
@ -36,7 +37,7 @@
"description_data": [
{
"lang": "eng",
"value": "A vulnerability in Cisco Webex Business Suite could allow an unauthenticated, remote attacker to inject arbitrary text into a user&rsquo;s browser. The vulnerability is due to improper validation of input. An attacker could exploit this vulnerability by convincing a targeted user to view a malicious URL. A successful exploit could allow the attacker to inject arbitrary text into the user&rsquo;s browser. The attacker could use the content injection to conduct spoofing attacks. "
"value": "A vulnerability in Cisco Webex Business Suite could allow an unauthenticated, remote attacker to inject arbitrary text into a user&rsquo;s browser. The vulnerability is due to improper validation of input. An attacker could exploit this vulnerability by convincing a targeted user to view a malicious URL. A successful exploit could allow the attacker to inject arbitrary text into the user&rsquo;s browser. The attacker could use the content injection to conduct spoofing attacks. Versions prior than 3.0.9 are affected. "
}
]
},