CVE-2020-3159
- EPSS 0.32%
- Published 19.02.2020 20:15:15
- Last modified 21.11.2024 05:30:26
A vulnerability in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack against a user of the web-based management interface of the affected software. The v...
CVE-2019-15278
- EPSS 0.7%
- Published 26.01.2020 05:15:11
- Last modified 21.11.2024 04:28:21
A vulnerability in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to bypass authorization and access sensitive information related to the device. The vulnerability exists because the software fails...
CVE-2019-12632
- EPSS 0.57%
- Published 05.09.2019 02:15:12
- Last modified 21.11.2024 04:23:13
A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to bypass access controls and conduct a server-side request forgery (SSRF) attack on an affected system. The vulnerability exists because the affected system does not pr...
CVE-2018-0399
- EPSS 0.72%
- Published 18.07.2018 23:29:01
- Last modified 21.11.2024 03:38:08
Multiple vulnerabilities in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to retrieve a cleartext password from an affected system. Cisco Bug IDs: CSCvg71044.
CVE-2018-0398
- EPSS 0.96%
- Published 18.07.2018 23:29:01
- Last modified 21.11.2024 03:38:08
Multiple vulnerabilities in the web-based management interface of Cisco Finesse could allow an unauthenticated, remote attacker to conduct a server-side request forgery (SSRF) attack. Cisco Bug IDs: CSCvg71018.
CVE-2017-6779
- EPSS 1.28%
- Published 07.06.2018 12:29:00
- Last modified 31.07.2025 15:03:24
Multiple Cisco products are affected by a vulnerability in local file management for certain system log files of Cisco collaboration products that could allow an unauthenticated, remote attacker to cause high disk utilization, resulting in a denial o...
- EPSS 12.27%
- Published 16.11.2017 07:29:01
- Last modified 31.07.2025 15:03:24
A vulnerability in the upgrade mechanism of Cisco collaboration products based on the Cisco Voice Operating System software platform could allow an unauthenticated, remote attacker to gain unauthorized, elevated access to an affected device. The vuln...
- EPSS 0.28%
- Published 12.08.2013 10:58:49
- Last modified 11.04.2025 00:51:21
Cisco Finesse allows remote attackers to obtain sensitive information by sniffing the network for HTTP query data, aka Bug ID CSCug16732.
- EPSS 0.21%
- Published 12.08.2013 10:58:49
- Last modified 11.04.2025 00:51:21
Absolute path traversal vulnerability in the web interface in Cisco Finesse allows remote attackers to read directory contents via a direct request to a directory URL, aka Bug ID CSCug16772.