CVE-2014-3364: Cisco Prime Security Manager
Medium severity, CVSS 4.3. EPSS: 0.9% chance of exploitation in the next 30 days.
Multiple cross-site scripting (XSS) vulnerabilities in the web framework in Cisco Prime Security Manager (aka PRSM) 9.2.1-2 and earlier allow remote attackers to inject arbitrary web script or HTML via a (1) Access Policies or (2) Device Summary Dashboard parameter, aka Bug ID CSCuq80661.
Affected products
- Cisco Prime Security Manager: up to and including 9.2.1-2
Published 2014-12-13. Last modified 2026-06-17.