cvelist/2013/6xxx/CVE-2013-6974.json

83 lines
2.3 KiB
JSON

{
"CVE_data_meta" : {
"ASSIGNER" : "cve@mitre.org",
"ID" : "CVE-2013-6974",
"STATE" : "PUBLIC"
},
"affects" : {
"vendor" : {
"vendor_data" : [
{
"product" : {
"product_data" : [
{
"product_name" : "n/a",
"version" : {
"version_data" : [
{
"version_value" : "n/a"
}
]
}
}
]
},
"vendor_name" : "n/a"
}
]
}
},
"data_format" : "MITRE",
"data_type" : "CVE",
"data_version" : "4.0",
"description" : {
"description_data" : [
{
"lang" : "eng",
"value" : "Cross-site scripting (XSS) vulnerability in the web interface in Cisco Secure Access Control System (ACS) allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCud89431."
}
]
},
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng",
"value" : "n/a"
}
]
}
]
},
"references" : {
"reference_data" : [
{
"name" : "20140109 Cisco Secure Access Control System Cross-Site Scripting Vulnerability",
"refsource" : "CISCO",
"url" : "http://tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2013-6974"
},
{
"name" : "64752",
"refsource" : "BID",
"url" : "http://www.securityfocus.com/bid/64752"
},
{
"name" : "101894",
"refsource" : "OSVDB",
"url" : "http://osvdb.org/101894"
},
{
"name" : "1029594",
"refsource" : "SECTRACK",
"url" : "http://www.securitytracker.com/id/1029594"
},
{
"name" : "56353",
"refsource" : "SECUNIA",
"url" : "http://secunia.com/advisories/56353"
}
]
}
}