Medium
CVE-2023-20002
Cisco TelePresence Collaboration Endpoint and RoomOS Software is vulnerable to server-side request forgery, caused by improper validation of user-supplied input. By sending a specially-crafted request, a local authenticated attacker could exploit this vulnerability to send arbitrary network requests that are sourced from the affected system.
Cisco
Refer to Cisco Security Advisory for patch, upgrade or suggested workaround information.