Multiple vulnerabilities in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to collect sensitive information or perform a server-side request forgery (SSRF) attack on an affected system. Cisco plans to release software updates that address these vulnerabilities.
References
Link | Resource |
---|---|
https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuic-infodisc-ssrf-84ZBmwVk | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
10 Mar 2023, 14:48
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-668 | |
First Time |
Cisco
Cisco unified Contact Center Enterprise Cisco packaged Contact Center Enterprise Cisco unified Intelligence Center Cisco unified Contact Center Express |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
CPE | cpe:2.3:a:cisco:unified_contact_center_enterprise:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:packaged_contact_center_enterprise:-:*:*:*:*:*:*:* cpe:2.3:a:cisco:unified_intelligence_center:*:*:*:*:*:*:*:* cpe:2.3:a:cisco:unified_contact_center_express:-:*:*:*:*:*:*:* |
|
References | (CISCO) https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuic-infodisc-ssrf-84ZBmwVk - Vendor Advisory |
03 Mar 2023, 17:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-03-03 16:15
Updated : 2023-12-10 14:48
NVD link : CVE-2023-20061
Mitre link : CVE-2023-20061
CVE.ORG link : CVE-2023-20061
JSON object : View
Products Affected
cisco
- packaged_contact_center_enterprise
- unified_contact_center_express
- unified_intelligence_center
- unified_contact_center_enterprise