Field Assessment
AI analysis pending.
CVE
CVE-2015-0599
Severity
MEDIUM
CVSS
4.3
EPSS
1.48%
Cisco F5
Original Filing — NVD Description
The web interface in Cisco Integrated Management Controller in Cisco Unified Computing System (UCS) on C-Series Rack Servers does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attacks and unspecified other attacks via a crafted web site, related to a "cross-frame scripting (XFS)" issue, aka Bug ID CSCuf50138.