Vulnerability Database

296,138

Total vulnerabilities in the database

CVE-2025-20288

A vulnerability in the web-based management interface of Cisco Unified Intelligence Center could allow an unauthenticated, remote attacker to conduct a server-side request forgery (SSRF) attack through an affected device.

This vulnerability is due to improper input validation for specific HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to send arbitrary network requests that are sourced from the affected device.

  • Published: Jul 16, 2025
  • Updated: Jul 17, 2025
  • CVE: CVE-2025-20288
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 5.3
  • AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

CWEs:

Software From Fixed in
cisco / unified_intelligence_center 12.0(1) 12.0(1).x
cisco / unified_intelligence_center 10.5(1) 10.5(1).x
cisco / unified_intelligence_center 11.0(1) 11.0(1).x
cisco / unified_intelligence_center 11.0(2) 11.0(2).x
cisco / unified_intelligence_center 11.0(3) 11.0(3).x
cisco / unified_intelligence_center 11.5(1) 11.5(1).x
cisco / unified_intelligence_center 11.6(1) 11.6(1).x
cisco / unified_intelligence_center 12.5(1) 12.5(1).x
cisco / unified_intelligence_center 12.5(1)su 12.5(1)su.x
cisco / unified_intelligence_center 12.6(1) 12.6(1).x
cisco / unified_intelligence_center 12.6(1)_es05_et 12.6(1)_es05_et.x
cisco / unified_intelligence_center 12.6(1)_et 12.6(1)_et.x
cisco / unified_intelligence_center 12.6(2) 12.6(2).x
cisco / unified_contact_center_express 10.5(1) 10.5(1).x
cisco / unified_contact_center_express 10.6(1) 10.6(1).x
cisco / unified_contact_center_express 12.5(1) 12.5(1).x
cisco / unified_contact_center_express 12.0(1) 12.0(1).x
cisco / unified_contact_center_express 11.6(1) 11.6(1).x
cisco / unified_contact_center_express 11.6(2) 11.6(2).x
cisco / unified_contact_center_express 10.5(1)su1 10.5(1)su1.x
cisco / unified_contact_center_express 10.5(1)su1es10 10.5(1)su1es10.x
cisco / unified_contact_center_express 10.6(1)su1 10.6(1)su1.x
cisco / unified_contact_center_express 10.6(1)su2 10.6(1)su2.x
cisco / unified_contact_center_express 10.6(1)su2es04 10.6(1)su2es04.x
cisco / unified_contact_center_express 10.6(1)su3 10.6(1)su3.x
cisco / unified_contact_center_express 10.6(1)su3es01 10.6(1)su3es01.x
cisco / unified_contact_center_express 10.6(1)su3es02 10.6(1)su3es02.x
cisco / unified_contact_center_express 10.6(1)su3es03 10.6(1)su3es03.x
cisco / unified_contact_center_express 11.0(1)su1 11.0(1)su1.x
cisco / unified_contact_center_express 11.0(1)su1es02 11.0(1)su1es02.x
cisco / unified_contact_center_express 11.0(1)su1es03 11.0(1)su1es03.x
cisco / unified_contact_center_express 11.5(1)es01 11.5(1)es01.x
cisco / unified_contact_center_express 11.5(1)su1 11.5(1)su1.x
cisco / unified_contact_center_express 11.5(1)su1es01 11.5(1)su1es01.x
cisco / unified_contact_center_express 11.5(1)su1es02 11.5(1)su1es02.x
cisco / unified_contact_center_express 11.5(1)su1es03 11.5(1)su1es03.x
cisco / unified_contact_center_express 12.5(1)_su02_es02 12.5(1)_su02_es02.x
cisco / unified_contact_center_express 12.5(1)_su01_es02 12.5(1)_su01_es02.x
cisco / unified_contact_center_express 12.5(1)_su01_es03 12.5(1)_su01_es03.x
cisco / unified_contact_center_express 12.5(1)_su02_es01 12.5(1)_su02_es01.x
cisco / unified_contact_center_express 11.6(2)es07 11.6(2)es07.x
cisco / unified_contact_center_express 11.6(2)es08 11.6(2)es08.x
cisco / unified_contact_center_express 12.5(1)_su01_es01 12.5(1)_su01_es01.x
cisco / unified_contact_center_express 12.0(1)es04 12.0(1)es04.x
cisco / unified_contact_center_express 11.6(2)es06 11.6(2)es06.x
cisco / unified_contact_center_express 12.0(1)es03 12.0(1)es03.x
cisco / unified_contact_center_express 12.0(1)es01 12.0(1)es01.x
cisco / unified_contact_center_express 11.6(2)es05 11.6(2)es05.x
cisco / unified_contact_center_express 12.0(1)es02 12.0(1)es02.x
cisco / unified_contact_center_express 11.6(2)es04 11.6(2)es04.x
cisco / unified_contact_center_express 11.6(2)es03 11.6(2)es03.x
cisco / unified_contact_center_express 11.6(2)es02 11.6(2)es02.x
cisco / unified_contact_center_express 11.6(2)es01 11.6(2)es01.x
cisco / unified_contact_center_express 11.6(1)es02 11.6(1)es02.x
cisco / unified_contact_center_express 11.6(1)es01 11.6(1)es01.x
cisco / unified_contact_center_express 12.5(1)su1 12.5(1)su1.x
cisco / unified_contact_center_express 12.5(1)su2 12.5(1)su2.x
cisco / unified_contact_center_express 12.5(1)su3 12.5(1)su3.x
cisco / unified_contact_center_express 12.5(1)_su03_es01 12.5(1)_su03_es01.x
cisco / unified_contact_center_express 12.5(1)_su03_es02 12.5(1)_su03_es02.x
cisco / unified_contact_center_express 12.5(1)_su02_es03 12.5(1)_su02_es03.x
cisco / unified_contact_center_express 12.5(1)_su02_es04 12.5(1)_su02_es04.x
cisco / unified_contact_center_express 12.5(1)es02 12.5(1)es02.x
cisco / unified_contact_center_express 12.5(1)es03 12.5(1)es03.x
cisco / unified_contact_center_express 12.5(1)es01 12.5(1)es01.x
cisco / unified_contact_center_express 12.5(1)_su03_es03 12.5(1)_su03_es03.x
cisco / unified_contact_center_express 12.5(1)_su03_es04 12.5(1)_su03_es04.x
cisco / unified_contact_center_express 12.5(1)_su03_es05 12.5(1)_su03_es05.x
cisco / unified_contact_center_express 12.5(1)_su03_es06 12.5(1)_su03_es06.x