#VU79664 Input validation error in Cisco Unified Contact Center Enterprise - CVE-2023-20232
Published: August 17, 2023
Cisco Unified Contact Center Enterprise
Cisco Systems, Inc
Description
The vulnerability allows a remote attacker to perform a web cache poisoning attack.
The vulnerability exists due to insufficient validation of user-supplied input when handling HTTP requests in the Tomcat implementation. A remote attacker can send specially crafted HTTP requests to the application and perform a web cache poisoning attack.