{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-04-22T17:03:09.543","vulnerabilities":[{"cve":{"id":"CVE-2018-0407","sourceIdentifier":"psirt@cisco.com","published":"2018-08-01T20:29:00.387","lastModified":"2024-11-21T03:38:09.830","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A vulnerability in the web-based management interface of Cisco Small Business 300 Series (Sx300) Managed Switches could allow an authenticated, remote attacker to conduct a persistent cross-site scripting (XSS) attack against a user of the web-based management interface of an affected device. The vulnerability is due to insufficient validation of user-supplied input by the web-based management interface of an affected device. An attacker could exploit this vulnerability by persuading a user of the interface to click a crafted link. A successful exploit could allow the attacker to execute arbitrary script code in the context of the interface or allow the attacker to access sensitive browser-based information. Cisco Bug IDs: CSCvi87326."},{"lang":"es","value":"Una vulnerabilidad en la interfaz de gestión web de Cisco Small Business 300 Series (Sx300) Managed Switches podría permitir que un atacante remoto autenticado lleve a cabo un ataque de Cross-Site Scripting (XSS) contra un usuario de dicha interfaz en un dispositivo afectado. La vulnerabilidad se debe a la validación insuficiente de entrada de datos de parte del usuario en la interfaz de gestión web de un dispositivo afectado. Un atacante podría explotar esta vulnerabilidad haciendo que un usuario de la interfaz haga clic en un enlace manipulado. Un exploit con éxito podría permitir al atacante ejecutar código script arbitrario en el contexto de la interfaz o que pueda acceder a información sensible del navegador. Cisco Bug IDs: CSCvi87326."}],"metrics":{"cvssMetricV30":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.0","vectorString":"CVSS:3.0/AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N","baseScore":5.4,"baseSeverity":"MEDIUM","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"REQUIRED","scope":"CHANGED","confidentialityImpact":"LOW","integrityImpact":"LOW","availabilityImpact":"NONE"},"exploitabilityScore":2.3,"impactScore":2.7}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:S/C:N/I:P/A:N","baseScore":3.5,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"SINGLE","confidentialityImpact":"NONE","integrityImpact":"PARTIAL","availabilityImpact":"NONE"},"baseSeverity":"LOW","exploitabilityScore":6.8,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"weaknesses":[{"source":"psirt@cisco.com","type":"Secondary","description":[{"lang":"en","value":"CWE-79"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-79"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf300-08_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"95F84EE8-5FE2-4BFE-91B1-5AB98FB7145E"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf300-08:-:*:*:*:*:*:*:*","matchCriteriaId":"7C96B794-16D3-46FE-8A2B-262BD38994E8"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf302-08_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"40E128AD-0ED3-4325-A8AB-99DBE8737F06"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf302-08:-:*:*:*:*:*:*:*","matchCriteriaId":"04042998-72B6-4215-9264-CC563E51D9CF"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf302-08p_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"119B8DCA-72CA-4B79-82C0-F05620ECFB78"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf302-08p:-:*:*:*:*:*:*:*","matchCriteriaId":"B9C97D56-2E3C-4F36-89E2-BC169AED3CC2"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf302-08pp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"0DCF7541-B413-431C-82E5-E12AE5D992AC"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf302-08pp:-:*:*:*:*:*:*:*","matchCriteriaId":"EFFEF3C3-0C7C-4359-A45F-00152ACAB545"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf302-08mp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"97BCF797-3FF4-40A1-B8C2-4080E09640AE"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf302-08mp:-:*:*:*:*:*:*:*","matchCriteriaId":"8124725E-8340-43BC-BEBB-BC39E3AE7368"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf302-08mpp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"B4AABF11-47DB-4DC4-9B90-2D3258EAFAAD"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf302-08mpp:-:*:*:*:*:*:*:*","matchCriteriaId":"19890DBE-F1B9-4454-8738-AC2AC6704C75"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf300-24_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"FEE86224-1883-4A5A-A49F-09FF51884472"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf300-24:-:*:*:*:*:*:*:*","matchCriteriaId":"C324F7E3-2088-452F-B049-519A9D25C9B5"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf300-24p_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"479DB0EF-166A-4C0D-9659-6F2891C88A18"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf300-24p:-:*:*:*:*:*:*:*","matchCriteriaId":"71D909B9-5B11-401E-8484-D6CD39D64142"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf300-24pp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"2B519DA0-9C2D-4FE9-BD8C-5C94AFFF701E"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf300-24pp:-:*:*:*:*:*:*:*","matchCriteriaId":"4E7B70CB-9D7A-4637-8A51-634157F7AC85"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf300-24mp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"87087817-E993-4D58-864C-6FFCFB924AD3"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf300-24mp:-:*:*:*:*:*:*:*","matchCriteriaId":"4882366A-9450-47BE-BE70-CC3A9D2F5275"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf300-48_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"D876D181-2F4C-447A-988A-BF585E5F38D9"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf300-48:-:*:*:*:*:*:*:*","matchCriteriaId":"765DECDB-4234-4444-B78F-01C1DCBAD8FA"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf300-48p_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"56AF6213-3930-4B0D-9A15-54C8027CF9FD"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf300-48p:-:*:*:*:*:*:*:*","matchCriteriaId":"A5307DEF-DCD1-417A-B649-FF4DCE66193E"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sf300-48pp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"B13747A0-FE84-4DED-923E-AA65BB4B5BC9"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sf300-48pp:-:*:*:*:*:*:*:*","matchCriteriaId":"E5248F85-411D-4ED9-983C-A28A90C8FC70"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-10_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"3885C4C4-579F-49C7-840F-256BC8FB3E34"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-10:-:*:*:*:*:*:*:*","matchCriteriaId":"78B44981-5C59-4328-A7DB-FBF50F9C92C2"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-10sfp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"2E313896-91C7-480B-AB3C-A4837F9AC363"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-10sfp:-:*:*:*:*:*:*:*","matchCriteriaId":"B402FBC0-91FC-471D-9D8A-C71F4FECF338"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-10p_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"FF86F983-F89C-4ED4-A092-981577DDC737"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-10p:-:*:*:*:*:*:*:*","matchCriteriaId":"9054C3D1-BA1A-4BAC-8834-88673B804E4E"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-10pp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"8ACA5D51-86C8-44CF-A100-2F5B2FD378FF"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-10pp:-:*:*:*:*:*:*:*","matchCriteriaId":"8F1772C3-48DB-4BEF-9F12-CDCC3BBFA0E1"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-10mp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"5C2F8BDA-9360-418A-BEEF-E41A5CD345AB"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-10mp:-:*:*:*:*:*:*:*","matchCriteriaId":"95F6D7AC-2ACB-4693-AB8E-C700B99C5BF4"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-10mpp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"89C0F0FC-C706-4D8B-B396-12BCBE2FF6C0"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-10mpp:-:*:*:*:*:*:*:*","matchCriteriaId":"AAD7CDE3-7247-4EA9-8A72-7ABC961BD895"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-20_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"0E97DA27-09CF-4292-A91A-ADBA744D1C8F"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-20:-:*:*:*:*:*:*:*","matchCriteriaId":"50A677CE-4360-4780-ABF9-466C45CB19E1"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-28_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"DDDC3FFD-1161-41B7-843C-83D07D0FF567"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-28:-:*:*:*:*:*:*:*","matchCriteriaId":"E74DB8D8-B79B-4DAE-BF88-98C1F518E76D"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-28p_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"980AFDC6-9A11-46FC-9570-431CC9667D98"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-28p:-:*:*:*:*:*:*:*","matchCriteriaId":"A2D5109D-C78B-4362-B000-0AA073FCC843"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-28pp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"E4A5FB60-E017-4F83-9809-052CFBF1B335"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-28pp:-:*:*:*:*:*:*:*","matchCriteriaId":"AD6F6741-AA56-47EA-998C-78FD7F6B01CC"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-28mp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"D273D904-0FAC-43A5-A89F-1FDE2952A615"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-28mp:-:*:*:*:*:*:*:*","matchCriteriaId":"2DB2B761-E591-42B6-B62F-63A6D41F4FAC"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-52_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"21AD5E5A-CAEA-4259-BEF4-CF060FC80F77"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-52:-:*:*:*:*:*:*:*","matchCriteriaId":"8E26EE1D-763F-4893-9997-F4C1CE7A1089"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-52p_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"65B1C306-BC99-4A86-919A-3A72FA94686B"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-52p:-:*:*:*:*:*:*:*","matchCriteriaId":"5E9DF9C4-9D06-4449-8AF0-8322C6B77F6A"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-52mp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"5A429813-D852-4E17-BD52-FEC0C1ADDD23"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-52mp:-:*:*:*:*:*:*:*","matchCriteriaId":"A4C3B5A2-CAE6-4E75-A1A3-4FCB1C62A7A8"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:cisco:sg300-28sfp_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"1.4.7","versionEndIncluding":"1.4.7.06","matchCriteriaId":"F7AEAE0B-80A0-49E8-9206-454D3B4EB5B2"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:cisco:sg300-28sfp:-:*:*:*:*:*:*:*","matchCriteriaId":"FAD69957-B714-406D-9775-92A7D993BAC6"}]}]}],"references":[{"url":"http://www.securityfocus.com/bid/104947","source":"psirt@cisco.com","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180801-sb-pxss","source":"psirt@cisco.com","tags":["Vendor Advisory"]},{"url":"http://www.securityfocus.com/bid/104947","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"]},{"url":"https://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20180801-sb-pxss","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}