VYPR
Medium severity6.5NVD Advisory· Published Apr 5, 2023· Updated Jun 17, 2026

CVE-2023-20129

CVE-2023-20129

Description

Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (EPNM) could allow a remote attacker to obtain privileged information and conduct cross-site scripting (XSS) and cross-site request forgery (CSRF) attacks. For more information about these vulnerabilities, see the Details section of this advisory.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

10
  • cpe:2.3:a:cisco:evolved_programmable_network_manager:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cisco:evolved_programmable_network_manager:*:*:*:*:*:*:*:*range: <5.0.2.5
    • (no CPE)
  • cpe:2.3:a:cisco:prime_infrastructure:*:*:*:*:*:*:*:*+ 6 more
    • cpe:2.3:a:cisco:prime_infrastructure:*:*:*:*:*:*:*:*range: <=3.7
    • cpe:2.3:a:cisco:prime_infrastructure:3.8.1:-:*:*:*:*:*:*
    • cpe:2.3:a:cisco:prime_infrastructure:3.8:*:*:*:*:*:*:*
    • cpe:2.3:a:cisco:prime_infrastructure:3.9.1:-:*:*:*:*:*:*
    • cpe:2.3:a:cisco:prime_infrastructure:3.9:*:*:*:*:*:*:*
    • (no CPE)
    • (no CPE)range: n/a

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.