Server-Side Request Forgery in Cisco Finesse Products
CVE-2016-1373

8.6HIGH

Key Information:

Vendor

Cisco

Status
Vendor
CVE Published:
5 May 2016

What is CVE-2016-1373?

The gadgets-integration API in various versions of Cisco Finesse allows remote attackers to exploit the system by sending crafted requests that can lead to server-side request forgery. This vulnerability can potentially be used to access internal services or resources that should not be exposed to the outside network, highlighting the importance of securing API endpoints against unauthorized access.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
8.6
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.