📧 info@ciso.sa | 📱 +966550939344 | Riyadh, Kingdom of Saudi Arabia
🔧 Scheduled Maintenance — Saturday 2:00-4:00 AM AST. Some features may be temporarily unavailable.    ●   
💎
Pro Plan 50% Off Unlock all AI features, unlimited reports, and priority support. Upgrade
Search Center
ESC to close
Global general Information Technology and Cybersecurity HIGH 1h Global vulnerability Cybersecurity Services HIGH 1h Global vulnerability Information Technology CRITICAL 2h Global vulnerability Enterprise Software and Cloud Services HIGH 2h Global vulnerability Software/Technology CRITICAL 2h Global vulnerability Information Technology, Security Infrastructure CRITICAL 3h Global vulnerability Industrial Control Systems / Manufacturing HIGH 4h Global general Artificial Intelligence and Cybersecurity MEDIUM 4h Global vulnerability Software/Cloud Services HIGH 5h Global vulnerability Network Infrastructure HIGH 5h Global general Information Technology and Cybersecurity HIGH 1h Global vulnerability Cybersecurity Services HIGH 1h Global vulnerability Information Technology CRITICAL 2h Global vulnerability Enterprise Software and Cloud Services HIGH 2h Global vulnerability Software/Technology CRITICAL 2h Global vulnerability Information Technology, Security Infrastructure CRITICAL 3h Global vulnerability Industrial Control Systems / Manufacturing HIGH 4h Global general Artificial Intelligence and Cybersecurity MEDIUM 4h Global vulnerability Software/Cloud Services HIGH 5h Global vulnerability Network Infrastructure HIGH 5h Global general Information Technology and Cybersecurity HIGH 1h Global vulnerability Cybersecurity Services HIGH 1h Global vulnerability Information Technology CRITICAL 2h Global vulnerability Enterprise Software and Cloud Services HIGH 2h Global vulnerability Software/Technology CRITICAL 2h Global vulnerability Information Technology, Security Infrastructure CRITICAL 3h Global vulnerability Industrial Control Systems / Manufacturing HIGH 4h Global general Artificial Intelligence and Cybersecurity MEDIUM 4h Global vulnerability Software/Cloud Services HIGH 5h Global vulnerability Network Infrastructure HIGH 5h
Vulnerabilities

CVE-2026-20175

Medium
CWE-73 — Weakness Type
Published: Jun 3, 2026  ·  Modified: Jun 6, 2026  ·  Source: NVD
CVSS v3
6.1
🔗 NVD Official
📄 Description (English)

A vulnerability in Cisco Finesse could allow an unauthenticated, remote attacker to load arbitrary files from remote locations into an active user session on an affected device, possibly leading to browser-based attacks.

This vulnerability is due to insufficient validation of user-supplied input for HTTP requests that are sent to an affected device. An attacker who has knowledge of the address of the affected device could exploit this vulnerability by persuading a user to click a crafted link that contains the affected device address. A successful exploit could allow the attacker to conduct browser-based attacks and execute arbitrary script code in the context of the affected interface or access sensitive information on the affected device.

🤖 AI Executive Summary

CVE-2026-20175 is a medium-severity vulnerability in Cisco Finesse that allows unauthenticated remote attackers to load arbitrary files into active user sessions through insufficient input validation. Exploitation requires social engineering to trick users into clicking malicious links, potentially enabling browser-based attacks and arbitrary script execution. While no exploit is currently available and patches are pending, organizations using Cisco Finesse for contact center operations should implement immediate compensating controls.

📄 Description (Arabic)

🤖 AI Intelligence Analysis Analyzed: Jun 4, 2026 10:17
🇸🇦 Saudi Arabia Impact Assessment
Saudi banking and financial institutions using Cisco Finesse for customer service operations face elevated risk, particularly SAMA-regulated banks managing sensitive customer interactions. Government agencies (NCA, Ministry of Interior) utilizing Finesse for citizen services could experience data exposure and service disruption. Telecommunications providers (STC, Mobily, Zain) operating contact centers are at significant risk. Healthcare organizations managing patient inquiries through Finesse could expose protected health information. The vulnerability's reliance on social engineering makes it particularly dangerous in environments with limited security awareness training.
🏢 Affected Saudi Sectors
Banking and Financial Services Government and Public Administration Telecommunications Healthcare Customer Service Operations
⚖️ Saudi Risk Score (AI)
6.8
/ 10.0
🔧 Remediation Steps (English)
Immediate Actions:
1. Disable or restrict access to Cisco Finesse interfaces until patches are available
2. Implement network segmentation to limit Finesse access to authorized networks only
3. Deploy email filtering and user awareness training to prevent phishing/social engineering attacks
4. Monitor for suspicious HTTP requests containing file:// or remote URLs in Finesse logs

Compensating Controls:
1. Implement Web Application Firewall (WAF) rules to block requests with suspicious file paths or remote URLs
2. Enable Content Security Policy (CSP) headers to prevent arbitrary script execution
3. Restrict outbound connections from Finesse servers to known-good destinations only
4. Implement strict input validation at network perimeter for all Finesse-bound traffic
5. Deploy endpoint detection and response (EDR) on Finesse servers

Detection Rules:
1. Alert on HTTP requests containing 'file://' or 'http://' in query parameters to Finesse
2. Monitor for unusual script execution within Finesse browser sessions
3. Track failed authentication attempts followed by crafted link access
4. Log all file loading operations and cross-reference with user actions

Patching:
1. Subscribe to Cisco security advisories for patch availability
2. Establish testing environment for patch validation before production deployment
3. Plan maintenance window for immediate patching upon release
🔧 خطوات المعالجة (العربية)
الإجراءات الفورية:
1. تعطيل أو تقييد الوصول إلى واجهات Cisco Finesse حتى توفر التصحيحات
2. تطبيق تقسيم الشبكة لتحديد وصول Finesse للشبكات المصرح بها فقط
3. نشر تصفية البريد الإلكتروني وتدريب الوعي الأمني للمستخدمين لمنع هجمات التصيد
4. مراقبة طلبات HTTP المريبة التي تحتوي على file:// أو عناوين URL بعيدة في سجلات Finesse

الضوابط التعويضية:
1. تطبيق قواعد جدار حماية تطبيقات الويب (WAF) لحجب الطلبات ذات المسارات المريبة
2. تفعيل رؤوس سياسة أمان المحتوى (CSP) لمنع تنفيذ البرامج النصية العشوائية
3. تقييد الاتصالات الصادرة من خوادم Finesse للوجهات المعروفة فقط
4. تطبيق التحقق الصارم من المدخلات على محيط الشبكة
5. نشر كشف ومعالجة نقاط النهاية (EDR) على خوادم Finesse

قواعد الكشف:
1. تنبيهات على طلبات HTTP تحتوي على 'file://' أو 'http://' في معاملات الاستعلام
2. مراقبة تنفيذ البرامج النصية غير العادية في جلسات متصفح Finesse
3. تتبع محاولات المصادقة الفاشلة متبوعة بوصول الروابط المصنعة
4. تسجيل جميع عمليات تحميل الملفات والتحقق المرجعي مع إجراءات المستخدم

التصحيح:
1. الاشتراك في استشارات أمان Cisco لتوفر التصحيحات
2. إنشاء بيئة اختبار للتحقق من صحة التصحيح قبل النشر الإنتاجي
3. التخطيط لنافذة صيانة للتصحيح الفوري عند الإصدار
📋 Regulatory Compliance Mapping
🟢 NCA ECC 2024
ECC 2024 A.5.1.1 - Access Control Policies ECC 2024 A.6.1.1 - User Authentication ECC 2024 A.8.2.1 - User Awareness and Training ECC 2024 A.12.2.1 - Change Management ECC 2024 A.12.6.1 - Management of Technical Vulnerabilities
🔵 SAMA CSF
SAMA CSF ID.AM-2 - Software Inventory SAMA CSF PR.AC-1 - Access Control SAMA CSF PR.PT-1 - Security Awareness and Training SAMA CSF DE.CM-1 - Network Monitoring SAMA CSF RS.MI-2 - Incident Response Procedures
🟡 ISO 27001:2022
ISO 27001:2022 A.5.1 - Policies for Information Security ISO 27001:2022 A.6.1 - Screening ISO 27001:2022 A.6.2 - Terms and Conditions of Employment ISO 27001:2022 A.8.1 - Awareness and Training ISO 27001:2022 A.12.6 - Management of Technical Vulnerabilities ISO 27001:2022 A.14.2 - Security Requirements Analysis and Specification
🟣 PCI DSS v4.0.1
PCI DSS 6.2 - Security Patches and Updates PCI DSS 6.5.1 - Injection Flaws PCI DSS 12.6 - Security Awareness Program
📊 CVSS Score
6.1
/ 10.0 — Medium
📊 CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Attack VectorN — None / Network
Attack ComplexityL — Low / Local
Privileges RequiredN — None / Network
User InteractionR — Required
ScopeC — Changed
ConfidentialityL — Low / Local
IntegrityL — Low / Local
AvailabilityN — None / Network
📋 Quick Facts
Severity Medium
CVSS Score6.1
CWECWE-73
EPSS0.02%
Exploit No
Patch ✗ No
Published 2026-06-03
Source Feed nvd
🇸🇦 Saudi Risk Score
6.8
/ 10.0 — Saudi Risk
Priority: HIGH
🏷️ Tags
CWE-73
Share this CVE
📣 Found this valuable?
Share it with your cybersecurity network
in LinkedIn 𝕏 X / Twitter 💬 WhatsApp ✈ Telegram
🍪 Privacy Preferences
CISO Consulting — Compliant with Saudi Personal Data Protection Law (PDPL)
We use cookies and similar technologies to provide the best experience on our platform. You can choose which types you accept.
🔒
Essential Always On
Required for the website to function properly. Cannot be disabled.
📋 Sessions, CSRF tokens, authentication, language preferences
📊
Analytics
Help us understand how visitors use the site and improve performance.
📋 Page views, session duration, traffic sources, performance metrics
⚙️
Functional
Enable enhanced features like content personalization and preferences.
📋 Dark/light theme, font size, custom dashboards, saved filters
📣
Marketing
Used to deliver content and ads relevant to your interests.
📋 Campaign tracking, retargeting, social media analytics
Privacy Policy →
CISO AI Assistant
Ask anything · Documents · Support
🔐

Introduce Yourself

Enter your details to access the full assistant

Your info is private and never shared
💬
CyberAssist
Online · responds in seconds
5 / 5
🔐 Verify Your Identity

Enter your email to receive a verification code before submitting a support request.

Enter to send · / for commands 0 / 2000
CISO AI · Powered by Anthropic Claude
✦ Quick Survey Help Us Improve CISO Consulting Your feedback shapes the future of our platform — takes less than 2 minutes.
⚠ Please answer this question to continue

How would you rate your overall experience with our platform?

Rate from 1 (poor) to 5 (excellent)

🎉
Thank you!
Your response has been recorded.