Server-Side Request Forgery in Cisco Finesse Products
CVE-2016-1373
8.6HIGH
What is CVE-2016-1373?
The gadgets-integration API in various versions of Cisco Finesse allows remote attackers to exploit the system by sending crafted requests that can lead to server-side request forgery. This vulnerability can potentially be used to access internal services or resources that should not be exposed to the outside network, highlighting the importance of securing API endpoints against unauthorized access.