CVE-2016-1294: Cisco Firesight System Software

Medium severity, CVSS 6.1. EPSS: 1.1% chance of exploitation in the next 30 days.

Cross-site scripting (XSS) vulnerability in the Management Center in Cisco FireSIGHT System Software 6.0.1 allows remote attackers to inject arbitrary web script or HTML via a crafted cookie, aka Bug ID CSCuw89094.

Affected products

  • Cisco Firesight System Software: version 6.0.1 only

Published 2016-01-16. Last modified 2026-06-17.