Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2025-20377

10 месяцев назад

A vulnerability in the API subsystem of Cisco Unified Intelligence Center could allow an authenticated, remote attacker to obtain sensitive information from an affected system. This vulnerability is due to improper validation of requests to certain API endpoints. An attacker could exploit this vulnerability by sending a valid request to a specific API endpoint within the affected system. A successful exploit could allow a low-privileged user to view sensitive information on the affected system that should be restricted. To exploit this vulnerability, the attacker must have valid user credentials on the affected system.

CVSS3: 4.3
EPSS: Низкий
github логотип

GHSA-46m8-44h2-g6m9

10 месяцев назад

A vulnerability in the API subsystem of Cisco Unified Intelligence Center could allow an authenticated, remote attacker to obtain sensitive information from an affected system. This vulnerability is due to improper validation of requests to certain API endpoints. An attacker could exploit this vulnerability by sending a valid request to a specific API endpoint within the affected system. A successful exploit could allow a low-privileged user to view sensitive information on the affected system that should be restricted. To exploit this vulnerability, the attacker must have valid user credentials on the affected system.

CVSS3: 4.3
EPSS: Низкий
fstec логотип

BDU:2025-15257

10 месяцев назад

Уязвимость программного интерфейса управления программного средства для создания отчетов Cisco Unified Intelligence Center, позволяющая нарушителю получить несанкционированный доступ к конфиденциальной информации

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-20377

A vulnerability in the API subsystem of Cisco Unified Intelligence Center could allow an authenticated, remote attacker to obtain sensitive information from an affected system. This vulnerability is due to improper validation of requests to certain API endpoints. An attacker could exploit this vulnerability by sending a valid request to a specific API endpoint within the affected system. A successful exploit could allow a low-privileged user to view sensitive information on the affected system that should be restricted. To exploit this vulnerability, the attacker must have valid user credentials on the affected system.

CVSS3: 4.3
0%
Низкий
10 месяцев назад
github логотип
GHSA-46m8-44h2-g6m9

A vulnerability in the API subsystem of Cisco Unified Intelligence Center could allow an authenticated, remote attacker to obtain sensitive information from an affected system. This vulnerability is due to improper validation of requests to certain API endpoints. An attacker could exploit this vulnerability by sending a valid request to a specific API endpoint within the affected system. A successful exploit could allow a low-privileged user to view sensitive information on the affected system that should be restricted. To exploit this vulnerability, the attacker must have valid user credentials on the affected system.

CVSS3: 4.3
0%
Низкий
10 месяцев назад
fstec логотип
BDU:2025-15257

Уязвимость программного интерфейса управления программного средства для создания отчетов Cisco Unified Intelligence Center, позволяющая нарушителю получить несанкционированный доступ к конфиденциальной информации

CVSS3: 4.3
0%
Низкий
10 месяцев назад

Уязвимостей на страницу