CVE-2025-20210
published 2025-05-07CVE-2025-20210: A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to read and modify…
PriorityP350high7.3CVSS 3.1
AVNACLPRNUINSUCLILAL
EPSS
0.35%
27.0th percentile
A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to read and modify the outgoing proxy configuration settings.
This vulnerability is due to the lack of authentication in an API endpoint. An attacker could exploit this vulnerability by sending a request to the affected API of a Catalyst Center device. A successful exploit could allow the attacker to view or modify the outgoing proxy configuration, which could disrupt internet traffic from Cisco Catalyst Center or may allow the attacker to intercept outbound internet traffic.
Affected
102 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | catalyst_center | < 2.3.7.9 | 2.3.7.9 |
| cisco | catalyst_center_unauthenticated | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
| cisco | cisco_digital_network_architecture_center | — | — |
CVSS provenance
nvdv3.17.3HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
vendor_cisco7.3HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Cisco
Cisco Catalyst Center Unauthenticated API Access Vulnerability
vendor_cisco·2025-05-07·CVSS 7.3
CVE-2025-20210 [HIGH] CWE-306 Cisco Catalyst Center Unauthenticated API Access Vulnerability
Cisco Catalyst Center Unauthenticated API Access Vulnerability
A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to read and modify the outgoing proxy configuration settings.
This vulnerability is due to the lack of authentication in an API endpoint. An attacker could exploit this vulnerability by sending a request to the affected API of a Catalyst Center device. A successful exploit could allow the attacker to view or modify the outgoing proxy configuration, which could disrupt internet traffic from Cisco Catalyst Center or may allow the attacker to intercept outbound internet traffic.
Note: For information about Cisco Catalyst Center features that require an internet connection and the correspondi
Cisco
Cisco Catalyst Center Unauthenticated API Access Vulnerability
vendor_cisco·CVSS 3.1
CVE-2025-20210 Cisco Catalyst Center Unauthenticated API Access Vulnerability
CVE-2025-20210: Cisco Catalyst Center Unauthenticated API Access Vulnerability
A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to read and modify the outgoing proxy configuration settings. This vulnerability is due to the lack of authentication in an API endpoint. An attacker could exploit this vulnerability by sending a request to the affected API of a Catalyst Center device. A successful exploit could allow the attacker to view or modify the outgoing proxy configuration, which could disrupt internet traffic from Cisco Catalyst Center or may allow the attacker to intercept outbound internet traffic. Note: For information about Cisco Catalyst Center features that require an internet connection and th
GHSA
GHSA-4f7p-398v-2rw7: A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to read and
ghsa_unreviewed·2025-05-07
CVE-2025-20210 [HIGH] CWE-306 GHSA-4f7p-398v-2rw7: A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to read and
A vulnerability in the management API of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an unauthenticated, remote attacker to read and modify the outgoing proxy configuration settings.
This vulnerability is due to the lack of authentication in an API endpoint. An attacker could exploit this vulnerability by sending a request to the affected API of a Catalyst Center device. A successful exploit could allow the attacker to view or modify the outgoing proxy configuration, which could disrupt internet traffic from Cisco Catalyst Center or may allow the attacker to intercept outbound internet traffic.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2025-05-07
Published