Unrated severityNVD Advisory· Published Jun 20, 2015· Updated Jun 17, 2026
CVE-2015-4198
CVE-2015-4198
Description
Cross-site scripting (XSS) vulnerability in the web framework on Cisco Web Security Appliance (WSA) devices with software 8.5.0-497 allows remote attackers to inject arbitrary web script or HTML via an unspecified HTTP header, aka Bug ID CSCuu24409.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:o:cisco:web_security_appliance:8.5.0-497:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:cisco:web_security_appliance:8.5.0-497:*:*:*:*:*:*:*
- (no CPE)range: =8.5.0-497
Patches
Vulnerability mechanics
References
3- tools.cisco.com/security/center/viewAlert.xnvdVendor Advisory
- www.securityfocus.com/bid/75326nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1032676nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.