CVE-2016-1373
Published May 5, 2016
Last updated 8 years ago
Overview
- Description
- The gadgets-integration API in Cisco Finesse 8.5(1) through 8.5(5), 8.6(1), 9.0(1), 9.0(2), 9.1(1), 9.1(1)SU1, 9.1(1)SU1.1, 9.1(1)ES1 through 9.1(1)ES5, 10.0(1), 10.0(1)SU1, 10.0(1)SU1.1, 10.5(1), 10.5(1)ES1 through 10.5(1)ES4, 10.5(1)SU1, 10.5(1)SU1.1, 10.5(1)SU1.7, 10.6(1), 10.6(1)SU1, 10.6(1)SU2, and 11.0(1) allows remote attackers to conduct server-side request forgery (SSRF) attacks via a crafted request, aka Bug ID CSCuw86623.
- Source
- ykramarz@cisco.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.0
- Type
- Primary
- Base score
- 8.6
- Impact score
- 4
- Exploitability score
- 3.9
- Vector string
- CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:N
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:P/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Evaluator
- Comment
- <a href="https://cwe.mitre.org/data/definitions/918.html">CWE-918: Server-Side Request Forgery (SSRF)</a>
- Impact
- -
- Solution
- -
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:cisco:finesse:8.5\\(1\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "93A74FB6-308B-440F-A713-B006599B0C1D" }, { "criteria": "cpe:2.3:a:cisco:finesse:8.5\\(2\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "64B9B388-9F1C-47D9-BD82-FA132E936521" }, { "criteria": "cpe:2.3:a:cisco:finesse:8.5\\(3\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "67BB5F85-5EE6-46A9-A071-A4AB99B53927" }, { "criteria": "cpe:2.3:a:cisco:finesse:8.5\\(4\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "154B9756-918E-4CA4-A2FA-F9A92EF3440A" }, { "criteria": "cpe:2.3:a:cisco:finesse:8.5\\(5\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1AAC47B7-EB35-400E-B9A8-F13620583F63" }, { "criteria": "cpe:2.3:a:cisco:finesse:8.6\\(1\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "59B1767A-B4CB-45B7-A364-15C75016E74A" }, { "criteria": "cpe:2.3:a:cisco:finesse:9.0\\(1\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4F31178A-E124-45CF-A284-E701C72A5D9A" }, { "criteria": "cpe:2.3:a:cisco:finesse:9.0\\(2\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "87FC4450-21C6-4DB1-9D65-AFFDB6C33DF1" }, { "criteria": "cpe:2.3:a:cisco:finesse:9.1\\(1\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D0DB180E-703A-4EB7-922D-1B3CA1E4904A" }, { "criteria": "cpe:2.3:a:cisco:finesse:9.1\\(1\\)_es1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "986D5ECE-89EF-45C0-A2C1-A33171B29155" }, { "criteria": "cpe:2.3:a:cisco:finesse:9.1\\(1\\)_es2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8BF257E1-C6EC-4917-90A7-28D592B0123F" }, { "criteria": "cpe:2.3:a:cisco:finesse:9.1\\(1\\)_es3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2132A987-5A3F-44C8-815D-BC7246911C99" }, { "criteria": "cpe:2.3:a:cisco:finesse:9.1\\(1\\)_es4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D00214A4-E9DF-4C66-AD16-D3AC583BFA8A" }, { "criteria": "cpe:2.3:a:cisco:finesse:9.1\\(1\\)_es5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EC791794-4890-40BF-A96F-FF93258885AF" }, { "criteria": "cpe:2.3:a:cisco:finesse:9.1\\(1\\)_su1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "39BC5752-1178-4E52-9BC3-20FAAD60D37D" }, { "criteria": "cpe:2.3:a:cisco:finesse:9.1\\(1\\)_su1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "92B3FB8A-300F-462A-B6FB-68D2615EF229" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.0\\(1\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "839493EF-394B-4F61-A78F-E1825B4092F9" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.0\\(1\\)_su1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EDAAD5DF-0763-49C2-A5C6-831CFECEB633" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.0\\(1\\)_su1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "24AA0D47-CFCD-4191-A5F8-2A42A65D7835" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.5\\(1\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "22F2B8E7-53AD-457D-B3BF-B261C80BBD0E" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.5\\(1\\)_es1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D37E02C3-B63F-43D9-AF7F-76609C424620" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.5\\(1\\)_es2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C869C393-AD1F-4334-92F6-F5CB11979EDB" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.5\\(1\\)_es3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7E80412C-6BFF-44D7-B3B6-D8CC19D93296" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.5\\(1\\)_es4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C3C8DA33-8104-414A-8C63-1405C6EEB362" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.5\\(1\\)_su1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "523D9F1F-74BA-4DD7-BF9F-473643CA32C4" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.5\\(1\\)_su1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "86356E8E-6751-4D5D-97C2-BC7180F7ED3B" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.5\\(1\\)_su1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12F677FF-1C9E-484A-A44B-8A4B74627579" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.6\\(1\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "316D6AAA-905B-4EE8-B170-B5385EEB1DC7" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.6\\(1\\)_su1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C319E8AD-774D-42A4-8B00-DCBB30413072" }, { "criteria": "cpe:2.3:a:cisco:finesse:10.6\\(1\\)_su2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "32B648DB-B8A7-40CC-B9CB-190D399C5BE4" }, { "criteria": "cpe:2.3:a:cisco:finesse:11.0\\(1\\)_base:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6F430C6D-24ED-4FB9-9F34-16F0A9CBEE2D" } ], "operator": "OR" } ] } ]