<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>Cpe:2.3:o:cisco:ios_xe:17.2.1v:*:*:*:*:*:*:* - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/cpes/cpe2.3ociscoios_xe17.2.1v/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Thu, 08 Oct 2026 13:10:19 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/cpes/cpe2.3ociscoios_xe17.2.1v/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>SSRF Vulnerability in Cisco Finesse, Unified CCE, and Unified CCX</title><link>https://feed.craftedsignal.io/briefs/2026-10-cisco-ssrf/</link><pubDate>Thu, 08 Oct 2026 13:10:19 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-10-cisco-ssrf/</guid><description>An unauthenticated, remote attacker can exploit a Server-Side Request Forgery (SSRF) vulnerability in Cisco Finesse, Unified CCE, and Unified CCX to gain unauthorized access to internal resources and disclose sensitive information.</description><content:encoded><![CDATA[<p>Cisco has disclosed a critical Server-Side Request Forgery (SSRF) vulnerability, identified as CVE-2024-20455, affecting Cisco Finesse, Cisco Unified Contact Center Enterprise (Unified CCE), and Cisco Unified Contact Center Express (Unified CCX). The vulnerability exists due to insufficient validation of user-supplied input provided to the application, allowing an unauthenticated, remote attacker to manipulate the backend server into performing unauthorized HTTP requests. By crafting specific requests, an attacker can bypass access controls to reach internal resources that are otherwise not accessible from the public internet. This flaw poses a significant risk to organizations as it may lead to the exfiltration of sensitive configuration data, internal metadata, or internal service responses that aid in further reconnaissance or lateral movement within the network. Defenders should prioritize patching, as this vulnerability requires no specialized authentication or prior access to the targeted systems.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation of this vulnerability allows unauthorized actors to perform SSRF attacks, leading to the exposure of sensitive internal information and reconnaissance of internal network segments. This exposes critical contact center infrastructure to potential data theft and increased risk of follow-on attacks against backend components, impacting the confidentiality of organizational data.</p>
<h2 id="recommendation">Recommendation</h2>
<p>Prioritize the application of vendor-supplied patches for CVE-2024-20455 across all affected Cisco Unified Communications products. Configure network-level egress filtering to restrict internal server-to-server communication initiated by these specific applications to only required destinations. Implement strict input validation and access controls on any application endpoints that handle URI-based parameters.</p>
]]></content:encoded><category domain="severity">low</category><category domain="type">advisory</category></item></channel></rss>