Search/CVE-2009-2048
CVE

CVE-2009-2048

Cross-site scripting (XSS) vulnerability in the Administration interface in Cisco Customer Response Solutions (CRS) before 7.0(1) SR2 in Cisco Unified Contact Center Express (aka CCX) server allows remote authenticated users to inject arbitrary web script or HTML into the CCX database via unspecified vectors.

CVSS v3.1
EPSS
1.02%
probability of exploitation in 30 days
CISA KEV
Not listed
no confirmed exploitation reported
News coverage
0
sources referencing this CVE
Connections
7 relationships
Timeline
disclosure → media coverage
Jul 16, 2009
Disclosure — published as a CVE record. · last revised by NVD Apr 23, 2026