Cisco Finesse是美国思科(Cisco)公司的一套呼叫中心管理软件。 Cisco Finesse 存在跨站脚本漏洞,该漏洞受影响软件的web管理界面对用户提供的输入没有充分验证。攻击者可利用该漏洞将恶意代码注入基于web的管理界面。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Cisco | Cisco Unified Contact Center Express | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-1487 | 8.8 HIGH | Cisco Prime Infrastructure and Cisco Evolved Programmable Network Manager Command Injectio |
| CVE-2021-1531 | 8.8 HIGH | Cisco Modeling Labs Web UI Command Injection Vulnerability |
| CVE-2021-1559 | 6.5 MEDIUM | Cisco DNA Spaces Connector Command Injection Vulnerabilities |
| CVE-2021-1560 | 6.5 MEDIUM | Cisco DNA Spaces Connector Command Injection Vulnerabilities |
| CVE-2021-1558 | 6.0 MEDIUM | Cisco DNA Spaces Connector Privilege Escalation Vulnerabilities |
| CVE-2021-1557 | 6.0 MEDIUM | Cisco DNA Spaces Connector Privilege Escalation Vulnerabilities |
| CVE-2021-1549 | 4.7 MEDIUM | Cisco Small Business 100, 300, and 500 Series Wireless Access Points Command Injection Vul |
| CVE-2021-1548 | 4.7 MEDIUM | Cisco Small Business 100, 300, and 500 Series Wireless Access Points Command Injection Vul |
| CVE-2021-1358 | 4.7 MEDIUM | Cisco Finesse Open Redirect Vulnerability |
| CVE-2021-1547 | 4.7 MEDIUM | Cisco Small Business 100, 300, and 500 Series Wireless Access Points Command Injection Vul |
| CVE-2021-1555 | 4.7 MEDIUM | Cisco Small Business 100, 300, and 500 Series Wireless Access Points Command Injection Vul |
| CVE-2021-1554 | 4.7 MEDIUM | Cisco Small Business 100, 300, and 500 Series Wireless Access Points Command Injection Vul |
| CVE-2021-1553 | 4.7 MEDIUM | Cisco Small Business 100, 300, and 500 Series Wireless Access Points Command Injection Vul |
| CVE-2021-1552 | 4.7 MEDIUM | Cisco Small Business 100, 300, and 500 Series Wireless Access Points Command Injection Vul |
| CVE-2021-1551 | 4.7 MEDIUM | Cisco Small Business 100, 300, and 500 Series Wireless Access Points Command Injection Vul |
| CVE-2021-1550 | 4.7 MEDIUM | Cisco Small Business 100, 300, and 500 Series Wireless Access Points Command Injection Vul |
| CVE-2021-1306 | 4.4 MEDIUM | Cisco ADE-OS Local File Inclusion Vulnerability |
No comments yet