<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 02 Oct 2026 12:40:40 +0000</lastBuildDate>
    <item>
      <title>cisco-sa-20170705-ise1 — Cisco Identity Services Engine Stored Cross-Site Scripting Vulnerability</title>
      <link>https://cve.radiocsirt.org/vuln/cisco-sa-20170705-ise1</link>
      <description>&lt;p&gt;A vulnerability in the web-based application interface of the Cisco Identity Services Engine (ISE) portal could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of an affected system.&#13;
&#13;
The vulnerability is due to insufficient input validation and output-encoding parameters for data that is passed between an affected client and server. An attacker could exploit this vulnerability by intercepting targeted user packets and injecting malicious code into the targeted traffic stream. A successful exploit could allow the attacker to inject script code into the HTTP flow between the targeted user and the affected system.&#13;
&#13;
For additional information about cross-site scripting attacks and the methods used to exploit these vulnerabilities, see the Cisco Applied Mitigation Bulletin Understanding Cross-Site Scripting (XSS) Threat Vectors [&amp;#34;https://sec.cloudapps.cisco.com/security/center/content/CiscoAppliedMitigationBulletin/cisco-amb-20060922-understanding-xss&amp;#34;] and the OWASP reference page Cross-site Scripting (XSS) [&amp;#34;https://www.owasp.org/index.php/Cross-site_Scripting_(XSS)&amp;#34;].&#13;
&#13;
There are no workarounds that address this vulnerability.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web-based application interface of the Cisco Identity Services Engine (ISE) portal could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of an affected system.&#13;
&#13;
The vulnerability is due to insufficient input validation and output-encoding parameters for data that is passed between an affected client and server. An attacker could exploit this vulnerability by intercepting targeted user packets and injecting malicious code into the targeted traffic stream. A successful exploit could allow the attacker to inject script code into the HTTP flow between the targeted user and the affected system.&#13;
&#13;
For additional information about cross-site scripting attacks and the methods used to exploit these vulnerabilities, see the Cisco Applied Mitigation Bulletin Understanding Cross-Site Scripting (XSS) Threat Vectors [&amp;#34;https://sec.cloudapps.cisco.com/security/center/content/CiscoAppliedMitigationBulletin/cisco-amb-20060922-understanding-xss&amp;#34;] and the OWASP reference page Cross-site Scripting (XSS) [&amp;#34;https://www.owasp.org/index.php/Cross-site_Scripting_(XSS)&amp;#34;].&#13;
&#13;
There are no workarounds that address this vulnerability.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cisco-sa-20170705-ise1</guid>
    </item>
    <item>
      <title>cnvd-2017-22157</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2017-22157</link>
      <description>cnvd-2017-22157</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2017-22157</guid>
    </item>
    <item>
      <title>EUVD-2026-74173</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-74173</link>
      <description>EUVD-2026-74173</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-74173</guid>
    </item>
    <item>
      <title>fkie_cve-2017-6733</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2017-6733</link>
      <description>&lt;p&gt;A vulnerability in the web-based application interface of the Cisco Identity Services Engine (ISE) portal could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of an affected system. More Information: CSCvd87482. Known Affected Releases: 2.1(102.101) 2.2(0.283) 2.3(0.151).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web-based application interface of the Cisco Identity Services Engine (ISE) portal could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of an affected system. More Information: CSCvd87482. Known Affected Releases: 2.1(102.101) 2.2(0.283) 2.3(0.151).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2017-6733</guid>
    </item>
    <item>
      <title>GHSA-3vfm-97xm-8mvv</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-3vfm-97xm-8mvv</link>
      <description>&lt;p&gt;A vulnerability in the web-based application interface of the Cisco Identity Services Engine (ISE) portal could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of an affected system. More Information: CSCvd87482. Known Affected Releases: 2.1(102.101) 2.2(0.283) 2.3(0.151).&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability in the web-based application interface of the Cisco Identity Services Engine (ISE) portal could allow an unauthenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the web interface of an affected system. More Information: CSCvd87482. Known Affected Releases: 2.1(102.101) 2.2(0.283) 2.3(0.151).&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-3vfm-97xm-8mvv</guid>
    </item>
    <item>
      <title>gsd-2017-6733</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2017-6733</link>
      <description>gsd-2017-6733</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2017-6733</guid>
    </item>
  </channel>
</rss>
