Vulnerabilities > Cisco > Evolved Programmable Network Manager > 5.1.2

DATE CVE VULNERABILITY TITLE RISK
2023-04-05 CVE-2023-20130 Cross-Site Request Forgery (CSRF) vulnerability in Cisco Prime Infrastructure
Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (EPNM) could allow a remote attacker to obtain privileged information and conduct cross-site scripting (XSS) and cross-site request forgery (CSRF) attacks.
network
low complexity
cisco CWE-352
6.5
2023-04-05 CVE-2023-20131 Cross-site Scripting vulnerability in Cisco Prime Infrastructure
Multiple vulnerabilities in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager (EPNM) could allow a remote attacker to obtain privileged information and conduct cross-site scripting (XSS) and cross-site request forgery (CSRF) attacks.
network
low complexity
cisco CWE-79
5.4
2023-03-03 CVE-2023-20069 Cross-site Scripting vulnerability in Cisco Prime Infrastructure
A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager could allow an authenticated, remote attacker to conduct a stored cross-site scripting (XSS) attack against a user of the interface on an affected device.
network
low complexity
cisco CWE-79
5.4
2022-02-17 CVE-2022-20659 Cross-site Scripting vulnerability in Cisco Prime Infrastructure
A vulnerability in the web-based management interface of Cisco Prime Infrastructure and Cisco Evolved Programmable Network (EPN) Manager could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the interface of an affected device.
network
low complexity
cisco CWE-79
6.1