Cisco Finesse contains an SSRF caused by insufficient validation of user-supplied input in HTTP requests, letting unauthenticated remote attackers access limited sensitive information, exploit requires sending crafted HTTP requests.
id: CVE-2024-20404
info:
name: Cisco Finesse - Server-Side Request Forgery (SSRF)
author: 0x_Ak
...