Medium severity6.5NVD Advisory· Published Apr 5, 2023· Updated Jun 17, 2026
CVE-2023-20129
CVE-2023-20129
Description
Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (EPNM) could allow a remote attacker to obtain privileged information and conduct cross-site scripting (XSS) and cross-site request forgery (CSRF) attacks. For more information about these vulnerabilities, see the Details section of this advisory.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
10cpe:2.3:a:cisco:evolved_programmable_network_manager:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:cisco:evolved_programmable_network_manager:*:*:*:*:*:*:*:*range: <5.0.2.5
- (no CPE)
cpe:2.3:a:cisco:prime_infrastructure:*:*:*:*:*:*:*:*+ 6 more
- cpe:2.3:a:cisco:prime_infrastructure:*:*:*:*:*:*:*:*range: <=3.7
- cpe:2.3:a:cisco:prime_infrastructure:3.8.1:-:*:*:*:*:*:*
- cpe:2.3:a:cisco:prime_infrastructure:3.8:*:*:*:*:*:*:*
- cpe:2.3:a:cisco:prime_infrastructure:3.9.1:-:*:*:*:*:*:*
- cpe:2.3:a:cisco:prime_infrastructure:3.9:*:*:*:*:*:*:*
- (no CPE)
- (no CPE)range: n/a
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.