Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-20242

Опубликовано: 21 мая 2025
Источник: nvd
CVSS3: 6.5
CVSS3: 9.1
EPSS Низкий

Описание

A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthenticated, remote attacker to read and modify data on an affected device.

This vulnerability is due to a lack of proper authentication controls. An attacker could exploit this vulnerability by sending crafted TCP data to a specific port on an affected device. A successful exploit could allow the attacker to read or modify data on the affected device.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:cisco:unified_contact_center_enterprise:12.6\(2\)es2:*:*:*:*:*:*:*

EPSS

Процентиль: 1%
0.00011
Низкий

6.5 Medium

CVSS3

9.1 Critical

CVSS3

Дефекты

CWE-284

Связанные уязвимости

CVSS3: 6.5
github
7 месяцев назад

A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthenticated, remote attacker to read and modify data on an affected device. This vulnerability is due to a lack of proper authentication controls. An attacker could exploit this vulnerability by sending crafted TCP data to a specific port on an affected device. A successful exploit could allow the attacker to read or modify data on the affected device.

CVSS3: 6.5
fstec
7 месяцев назад

Уязвимость компонента Cloud Connect программного средства для управления контакт-центрами Cisco Unified Contact Center Enterprise (CCE), позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

EPSS

Процентиль: 1%
0.00011
Низкий

6.5 Medium

CVSS3

9.1 Critical

CVSS3

Дефекты

CWE-284