Vulnerabilities (CVE)

Filtered by vendor Cisco Subscribe
Filtered by product Finesse
Total 24 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2015-0754 1 Cisco 1 Finesse 2024-11-21 7.5 HIGH N/A
Cisco Finesse 10.5(1) allows remote authenticated users to obtain sensitive information or cause a denial of service (CPU and memory consumption) via a crafted XML document, aka Bug ID CSCut95810.
CVE-2015-0714 1 Cisco 1 Finesse 2024-11-21 4.3 MEDIUM N/A
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Finesse Server 10.0(1), 10.5(1), 10.6(1), and 11.0(1) allow remote attackers to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID CSCut53595.
CVE-2013-3457 1 Cisco 1 Finesse 2024-11-21 5.0 MEDIUM N/A
Absolute path traversal vulnerability in the web interface in Cisco Finesse allows remote attackers to read directory contents via a direct request to a directory URL, aka Bug ID CSCug16772.
CVE-2013-3455 1 Cisco 1 Finesse 2024-11-21 5.0 MEDIUM N/A
Cisco Finesse allows remote attackers to obtain sensitive information by sniffing the network for HTTP query data, aka Bug ID CSCug16732.