CVE-2023-20184
published 2023-05-18CVE-2023-20184: Multiple vulnerabilities in the API of Cisco DNA Center Software could allow an authenticated, remote attacker to read information from a restricted container…
medium4.3CVSS 3.1
AVNACLPRLUINSUCLINAN
Multiple vulnerabilities in the API of Cisco DNA Center Software could allow an authenticated, remote attacker to read information from a restricted container, enumerate user information, or execute arbitrary commands in a restricted container as the root user. For more information about these vulnerabilities, see the Details section of this advisory.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | catalyst_center | < 2.2.3.5 | 2.2.3.5 |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | dna_center | — | — |