CNNVD-202507-2262 Information

CNNVD ID

CNNVD-202507-2262

CVE-2025-20288

  • CNNVD Published: 2025-07-16

Description (Chinese)

Cisco Unified Intelligence Center是美国思科(Cisco)公司的一套基于Web的报表平台。该平台提供报告相关的业务数据和呼叫中心数据的展示功能。 Cisco Unified Intelligence Center存在代码问题漏洞,该漏洞源于特定HTTP请求输入验证不当,可能导致未经验证的远程攻击者进行服务端请求伪造攻击。

Description (English)

Cisco United Information Center is a Web-based reporting platform for Cisco. The platform provides presentation functions for reporting relevant operational data and call centre data. Cisco United Inteligence Center had a code loophole, which stemmed from the fact that a specific HTTP request for input certification was inappropriate and could lead to uncertified long-range assailants requesting a false attack.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

思科

Published

2025-07-16

Last Modified

2026-02-24

References

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuis-ssrf-JSuDjeV

Patch

https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-cuis-ssrf-JSuDjeV

Share on: