Cisco uniied Intelligence Center Cross-Site Request Forgery Vulnerability
Cisco uniied Intelligence Center Cross-Site Request Forgery Vulnerability
Release date:
Updated on:
Affected Systems:
Cisco uniied Intelligence Center 10.6 (1)
Description:
Bugtraq id: 74732
CVE (CAN) ID: CVE-2015-0740
Cisco Unified Intelligence Center is a Web-based graphical user interface that provides real-time and historical Contact Center reports for Cisco Unified Contact Center Enterprise.
Cisco uniied Intelligence Center 10.6 (1) has a Cross-Site Request Forgery Vulnerability. Remote attackers can exploit this vulnerability to hijack the authentication of arbitrary users and perform cross-site request forgery attacks.
<* Source: Cisco
*>
Suggestion:
Vendor patch:
Cisco
-----
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://tools.cisco.com/security/center/viewAlert.x? AlertId = 38913
This article permanently updates the link address: