VYPR

Jabber Client Framework

by Cisco Systems, Inc.

CVEs (4)

  • CVE-2018-0199MedFeb 22, 2018
    risk 0.40cvss 6.1epss 0.02

    A vulnerability in Cisco Jabber Client Framework (JCF) could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of an affected device. The vulnerability is due to improper neutralization of script in attributes in a web page.…

  • CVE-2018-0201MedFeb 22, 2018
    risk 0.35cvss 5.4epss 0.01

    A vulnerability in Cisco Jabber Client Framework (JCF) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of an affected device. The vulnerability is due to improper neutralization of input during web page generation. An…

  • CVE-2018-0483MedJan 10, 2019
    risk 0.30cvss 4.6epss 0.01

    A vulnerability in Cisco Jabber Client Framework (JCF) could allow an authenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of an affected system. The vulnerability is due to insufficient validation of user-supplied input of an affected…

  • CVE-2018-0449MedJan 10, 2019
    risk 0.27cvss 4.2epss 0.00

    A vulnerability in the Cisco Jabber Client Framework (JCF) software, installed as part of the Cisco Jabber for Mac client, could allow an authenticated, local attacker to corrupt arbitrary files on an affected device that has elevated privileges. The vulnerability exists due to…