Unrated severityNVD Advisory· Published Jul 26, 2014· Updated May 6, 2026
CVE-2014-3324
CVE-2014-3324
Description
Multiple cross-site scripting (XSS) vulnerabilities in the login page in the administrative web interface in Cisco TelePresence Server Software 4.0(2.8) allow remote attackers to inject arbitrary web script or HTML via a crafted parameter, aka Bug ID CSCup90060.
Affected products
4cpe:2.3:a:cisco:telepresence_server_software:3.0\(2.24\):*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:cisco:telepresence_server_software:3.0\(2.24\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:telepresence_server_software:3.1\(1.98\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:telepresence_server_software:4.0\(1.57\):*:*:*:*:*:*:*
- cpe:2.3:a:cisco:telepresence_server_software:4.0\(2.8\):*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3324nvdVendor Advisory
- tools.cisco.com/security/center/viewAlert.xnvdVendor Advisory
- www.securityfocus.com/bid/68885nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1030640nvdThird Party AdvisoryVDB Entry
- secunia.com/advisories/60456nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/94847nvd
News mentions
0No linked articles in our index yet.