Cisco Firepower 9000 Persistent Cross-Site Scripting Vulnerability
The vulnerability is due to insufficient input validation of a user-supplied value. An attacker could exploit this vulnerability by convincing a user to click on a specific link.
Cisco has not released software updates that address this vulnerability. Workarounds that mitigate this vulnerability are not available.
This advisory is available at the following link: http://ift.tt/1Lkqd0d
from Cisco Security Advisory http://ift.tt/1Lkqd0d