IT

Tracker / CVE-2023-20129

CVE-2023-20129

Medium 6.5

Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (EPNM) could allow a remote attacker to obtain privileged information and conduct cross-site scripting (XSS) and cross-site request forgery (CSRF) attacks. For more information about these vulnerabilities, see the Details section of this advisory.

Affected products and versions

cisco evolved_programmable_network_manager · … → 5.0.2.5
cisco evolved_programmable_network_manager · 5.1 → 5.1.4.2
cisco evolved_programmable_network_manager · 6.0 → 6.0.2.1
cisco evolved_programmable_network_manager · 6.1 → 6.1.1.1
cisco prime_infrastructure
cisco prime_infrastructure · … → 3.7
cisco prime_infrastructure · 3.10 → 3.10.2

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References