Ciscosecure
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2002-0938 | 0.03 | — | 0.03 | Oct 4, 2002 | Cross-site scripting vulnerability in CiscoSecure ACS 3.0 allows remote attackers to execute arbitrary script or HTML as other web users via the action argument in a link to setup.exe. | |||
| CVE-1999-0734 | 0.00 | — | 0.01 | Aug 19, 1999 | A default configuration of CiscoSecure Access Control Server (ACS) allows remote users to modify the server database without authentication. |
- CVE-2002-0938Oct 4, 2002risk 0.03cvss —epss 0.03
Cross-site scripting vulnerability in CiscoSecure ACS 3.0 allows remote attackers to execute arbitrary script or HTML as other web users via the action argument in a link to setup.exe.
- CVE-1999-0734Aug 19, 1999risk 0.00cvss —epss 0.01
A default configuration of CiscoSecure Access Control Server (ACS) allows remote users to modify the server database without authentication.