Cross-Site Request Forgery Vulnerability in Cisco Unified Contact Center Express
CVE-2018-0402
8.8HIGH
Key Information:
- Vendor
Cisco
- Vendor
- CVE Published:
- 18 July 2018
What is CVE-2018-0402?
Multiple vulnerabilities within the web-based management interface of Cisco Unified Contact Center Express may enable an unauthenticated remote attacker to conduct a Cross-Site Request Forgery (CSRF) attack. By exploiting these vulnerabilities, attackers could potentially perform unauthorized operations on behalf of logged-in users, compromising the confidentiality and integrity of user sessions. It is crucial for organizations using this product to implement the necessary security patches and measures to mitigate these risks effectively.
Affected Version(s)
Cisco Unified Contact Center Express unknown Cisco Unified Contact Center Express unknown