CVE-2016-6427

Cross-site request forgery (CSRF) vulnerability in Cisco Unified Intelligence Center (CUIC) 8.5.4 through 9.1(1), as used in Unified Contact Center Express 10.0(1) through 11.0(1), allows remote attackers to hijack the authentication of arbitrary users, aka Bug IDs CSCuy75036 and CSCuy81654.

Data: Cisco advisories · Cisco CSAF · NVD CVEs · NVD CPEs · CISA KEV · EPSS

SeverityHIGH
CVSS8.8
EPSS-
CWECWE-352
KEV
Published
Modified

Products with public affected evidence

Product Advisory Affected evidence
Cisco Unified Contact Center Express cisco-sa-20161005-ucis3 structured affected CSAF product_status
Cisco Unified Intelligence Center cisco-sa-20161005-ucis3 structured affected CSAF product_status