CVE-2020-3159
- EPSS 0.32%
- Veröffentlicht 19.02.2020 20:15:15
- Zuletzt bearbeitet 21.11.2024 05:30:26
A vulnerability in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of the affected software. The v...
CVE-2019-15278
- EPSS 0.7%
- Veröffentlicht 26.01.2020 05:15:11
- Zuletzt bearbeitet 21.11.2024 04:28:21
A vulnerability in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to bypass authorization and access sensitive information related to the device. The vulnerability exists because the software fails...
CVE-2019-12632
- EPSS 0.57%
- Veröffentlicht 05.09.2019 02:15:12
- Zuletzt bearbeitet 21.11.2024 04:23:13
A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to bypass access controls and conduct a server-side request forgery (SSRF) attack on an affected system. The vulnerability exists because the affected system does not pr...
CVE-2018-0399
- EPSS 0.72%
- Veröffentlicht 18.07.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:38:08
Multiple vulnerabilities in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to retrieve a cleartext password from an affected system. Cisco Bug IDs: CSCvg71044.
CVE-2018-0398
- EPSS 0.96%
- Veröffentlicht 18.07.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:38:08
Multiple vulnerabilities in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to conduct a server-side request forgery (SSRF) attack. Cisco Bug IDs: CSCvg71018.
CVE-2017-6779
- EPSS 1.28%
- Veröffentlicht 07.06.2018 12:29:00
- Zuletzt bearbeitet 31.07.2025 15:03:24
Multiple Cisco products are affected by a vulnerability in local file management for certain system log files of Cisco collaboration products that could allow an unauthenticated, remote attacker to cause high disk utilization, resulting in a denial o...
- EPSS 12.27%
- Veröffentlicht 16.11.2017 07:29:01
- Zuletzt bearbeitet 31.07.2025 15:03:24
A vulnerability in the upgrade mechanism of Cisco collaboration products based on the Cisco Voice Operating System software platform could allow an unauthenticated, remote attacker to gain unauthorized, elevated access to an affected device. The vuln...
- EPSS 0.28%
- Veröffentlicht 12.08.2013 10:58:49
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cisco Finesse allows remote attackers to obtain sensitive information by sniffing the network for HTTP query data, aka Bug ID CSCug16732.
- EPSS 0.21%
- Veröffentlicht 12.08.2013 10:58:49
- Zuletzt bearbeitet 11.04.2025 00:51:21
Absolute path traversal vulnerability in the web interface in Cisco Finesse allows remote attackers to read directory contents via a direct request to a directory URL, aka Bug ID CSCug16772.