Unrated severityNVD Advisory· Published Sep 12, 2014· Updated May 6, 2026
CVE-2014-3363
CVE-2014-3363
Description
Cross-site scripting (XSS) vulnerability in the web framework in Cisco Unified Communications Manager (UCM) 9.1(2.10000.28) allows remote authenticated users to inject arbitrary web script or HTML via an unspecified parameter, aka Bug ID CSCuq68443.
Affected products
1- cpe:2.3:a:cisco:unified_communications_manager:9.1\(2.10000.28\):*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
6- tools.cisco.com/security/center/content/CiscoSecurityNotice/CVE-2014-3363nvdVendor Advisory
- tools.cisco.com/security/center/viewAlert.xnvdVendor Advisory
- secunia.com/advisories/59105nvd
- www.securityfocus.com/bid/69739nvd
- www.securitytracker.com/id/1030836nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/95882nvd
News mentions
0No linked articles in our index yet.