Unrated severityNVD Advisory· Published Jun 20, 2015· Updated May 6, 2026
CVE-2015-4198
CVE-2015-4198
Description
Cross-site scripting (XSS) vulnerability in the web framework on Cisco Web Security Appliance (WSA) devices with software 8.5.0-497 allows remote attackers to inject arbitrary web script or HTML via an unspecified HTTP header, aka Bug ID CSCuu24409.
Affected products
1- cpe:2.3:o:cisco:web_security_appliance:8.5.0-497:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- tools.cisco.com/security/center/viewAlert.xnvdVendor Advisory
- www.securityfocus.com/bid/75326nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1032676nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.