CVE-2025-20296 | Cisco Unified Computing System up to 4.3(5e) Web-based Management Interface cross site scripting (cisco-sa-ucs-xss-Ey6XhyPS / WID-SEC-2025-1917)
A vulnerability, which was classified as problematic, has been found in Cisco Unified Computing System. Affected is an unknown function of the component Web-based Management Interface. This manipulation causes cross site scripting.
This vulnerability is registered as CVE-2025-20296. Remote exploitation of the attack is possible. No exploit is available.
It is advisable to upgrade the affected component.