CVE-2009-2048
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Cross-site scripting (XSS) vulnerability in the Administration interface in Cisco Customer Response Solutions (CRS) before 7.0(1) SR2 in Cisco Unified Contact Center Express (aka CCX) server allows remote authenticated users to inject arbitrary web script or HTML into the CCX database via unspecified vectors.
Vulnerabilidad de ejecución de secuencias de comandos en sitios cruzados - XSS - en el interfaz de administración en Cisco Customer Response Solutions (CRS) anteriores a v7.0(1) SR2 en el servidor Cisco Unified Contact Center Express (también conocido como CCX) permite a los usuarios remotos autenticado inyectar arbitrariamente una secuencia de comandos web o HTML en la base de datos CCX a través de vectores no especificados.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2009-06-12 CVE Reserved
- 2009-07-16 CVE Published
- 2023-09-03 EPSS Updated
- 2024-08-07 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (7)
URL | Tag | Source |
---|---|---|
http://osvdb.org/55937 | Vdb Entry | |
http://secunia.com/advisories/35861 | Third Party Advisory | |
http://www.securityfocus.com/bid/35705 | Vdb Entry | |
http://www.securitytracker.com/id?1022569 | Vdb Entry | |
http://www.vupen.com/english/advisories/2009/1913 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/51730 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://www.cisco.com/en/US/products/products_security_advisory09186a0080ae04b2.shtml | 2017-08-17 |
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Cisco Search vendor "Cisco" | Crs Search vendor "Cisco" for product "Crs" | 3.5 Search vendor "Cisco" for product "Crs" and version "3.5" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Crs Search vendor "Cisco" for product "Crs" | 4.0 Search vendor "Cisco" for product "Crs" and version "4.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Crs Search vendor "Cisco" for product "Crs" | 4.1 Search vendor "Cisco" for product "Crs" and version "4.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Crs Search vendor "Cisco" for product "Crs" | 4.5 Search vendor "Cisco" for product "Crs" and version "4.5" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Crs Search vendor "Cisco" for product "Crs" | 5.0 Search vendor "Cisco" for product "Crs" and version "5.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Crs Search vendor "Cisco" for product "Crs" | 6.0 Search vendor "Cisco" for product "Crs" and version "6.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Crs Search vendor "Cisco" for product "Crs" | 7.0 Search vendor "Cisco" for product "Crs" and version "7.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Customer Response Applications Search vendor "Cisco" for product "Customer Response Applications" | 3.5 Search vendor "Cisco" for product "Customer Response Applications" and version "3.5" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Ip Qm Search vendor "Cisco" for product "Ip Qm" | 3.5 Search vendor "Cisco" for product "Ip Qm" and version "3.5" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 3.5 Search vendor "Cisco" for product "Unified Ccx" and version "3.5" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 4.0\(1\) Search vendor "Cisco" for product "Unified Ccx" and version "4.0\(1\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 4.0\(3\) Search vendor "Cisco" for product "Unified Ccx" and version "4.0\(3\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 4.0\(4\) Search vendor "Cisco" for product "Unified Ccx" and version "4.0\(4\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 4.0\(5\) Search vendor "Cisco" for product "Unified Ccx" and version "4.0\(5\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 4.0\(5a\) Search vendor "Cisco" for product "Unified Ccx" and version "4.0\(5a\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 4.5\(1\) Search vendor "Cisco" for product "Unified Ccx" and version "4.5\(1\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 4.5\(2\) Search vendor "Cisco" for product "Unified Ccx" and version "4.5\(2\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 5.0\(1\) Search vendor "Cisco" for product "Unified Ccx" and version "5.0\(1\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 6.0\(1\) Search vendor "Cisco" for product "Unified Ccx" and version "6.0\(1\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ccx Search vendor "Cisco" for product "Unified Ccx" | 7.0\(1\) Search vendor "Cisco" for product "Unified Ccx" and version "7.0\(1\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Contact Center Express Search vendor "Cisco" for product "Unified Ip Contact Center Express" | 3.0 Search vendor "Cisco" for product "Unified Ip Contact Center Express" and version "3.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Contact Center Express Search vendor "Cisco" for product "Unified Ip Contact Center Express" | 5.0\(1\) Search vendor "Cisco" for product "Unified Ip Contact Center Express" and version "5.0\(1\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Contact Center Express Search vendor "Cisco" for product "Unified Ip Contact Center Express" | 6.0\(1\) Search vendor "Cisco" for product "Unified Ip Contact Center Express" and version "6.0\(1\)" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Contact Center Express Search vendor "Cisco" for product "Unified Ip Contact Center Express" | 7.0 Search vendor "Cisco" for product "Unified Ip Contact Center Express" and version "7.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Ivr Search vendor "Cisco" for product "Unified Ip Ivr" | 3.0 Search vendor "Cisco" for product "Unified Ip Ivr" and version "3.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Ivr Search vendor "Cisco" for product "Unified Ip Ivr" | 3.1 Search vendor "Cisco" for product "Unified Ip Ivr" and version "3.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Ivr Search vendor "Cisco" for product "Unified Ip Ivr" | 4.0 Search vendor "Cisco" for product "Unified Ip Ivr" and version "4.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Ivr Search vendor "Cisco" for product "Unified Ip Ivr" | 4.1 Search vendor "Cisco" for product "Unified Ip Ivr" and version "4.1" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Ivr Search vendor "Cisco" for product "Unified Ip Ivr" | 4.5 Search vendor "Cisco" for product "Unified Ip Ivr" and version "4.5" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Ivr Search vendor "Cisco" for product "Unified Ip Ivr" | 5.0 Search vendor "Cisco" for product "Unified Ip Ivr" and version "5.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Ivr Search vendor "Cisco" for product "Unified Ip Ivr" | 6.0 Search vendor "Cisco" for product "Unified Ip Ivr" and version "6.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Ivr Search vendor "Cisco" for product "Unified Ip Ivr" | 7.0 Search vendor "Cisco" for product "Unified Ip Ivr" and version "7.0" | - |
Affected
| ||||||
Cisco Search vendor "Cisco" | Unified Ip Ivr Search vendor "Cisco" for product "Unified Ip Ivr" | 7.0\(1\) Search vendor "Cisco" for product "Unified Ip Ivr" and version "7.0\(1\)" | - |
Affected
|