First published: Fri Mar 03 2023(Updated: )
Multiple vulnerabilities in Cisco Unified Intelligence Center could allow an authenticated, remote attacker to collect sensitive information or perform a server-side request forgery (SSRF) attack on an affected system. Cisco plans to release software updates that address these vulnerabilities.
Credit: ykramarz@cisco.com
Affected Software | Affected Version | How to fix |
---|---|---|
Cisco Packaged Contact Center Enterprise | ||
Cisco Unified Contact Center Enterprise | ||
Cisco Unified Contact Center Express | ||
Cisco Unified Intelligence Center | <12.6\(2\) |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2023-20061.
The severity of CVE-2023-20061 is medium with a severity value of 6.5.
CVE-2023-20061 affects Cisco Packaged Contact Center Enterprise, Cisco Unified Contact Center Enterprise, Cisco Unified Contact Center Express, and Cisco Unified Intelligence Center.
An authenticated remote attacker can collect sensitive information or perform a server-side request forgery (SSRF) attack on the affected system.
Cisco plans to release software updates to address CVE-2023-20061. Please refer to the Cisco Security Advisory for more information.