Cross-Site Request Forgery Vulnerability in Cisco Finesse Software
CVE-2016-6442
8.8HIGH
What is CVE-2016-6442?
A vulnerability exists in Cisco Finesse Agent and Supervisor Desktop Software that enables an unauthenticated, remote attacker to launch a cross-site request forgery (CSRF) attack. This flaw may allow the attacker to manipulate requests made by the user while interacting with the web interface, leading to potential unauthorized actions within the affected software. Security measures and configurations should be reviewed to mitigate the risks associated with this vulnerability.
Affected Version(s)
Cisco Finesse 11.0(1) Cisco Finesse 11.0(1)