VendorsCiscocatalyst_centerall versions
Vulnerabilities

Cisco Catalyst Center

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

26CVEs
CVE-2021-1264
Cisco DNA Center Command Runner Command Injection Vulnerability
Published 2021-01-20 · Modified
9.6EPSS 0.037
CVE-2021-1303
Cisco DNA Center Privilege Escalation Vulnerability
Published 2021-01-20 · Modified
8.8EPSS 0.014
CVE-2021-1257
Cisco DNA Center Cross-Site Request Forgery Vulnerability
Published 2021-01-20 · Modified
8.8EPSS 0.008
CVE-2023-20055
Cisco DNA Center Privilege Escalation Vulnerability
Published 2023-03-23 · Modified
8.8EPSS 0.007
CVE-2023-20182
Cisco DNA Center Software API Vulnerabilities
Published 2023-05-18 · Modified
8.8EPSS 0.006
CVE-2025-20349
Cisco DNA Center API Command Injection Vulnerability
Published 2025-11-13 · Analyzed
8.8EPSS 0.004
CVE-2019-1841
Cisco DNA Center Unintended Proxy Via SWIM Import Interface Vulnerability
Published 2019-04-18 · Modified
8.1EPSS 0.026
CVE-2024-20350
Cisco Catalyst Center Static SSH Host Key Vulnerability
Published 2024-09-25 · Analyzed
8.1EPSS 0.004
CVE-2021-1265
Cisco DNA Center Information Disclosure Vulnerability
Published 2021-01-20 · Modified
7.7EPSS 0.009
CVE-2020-3411
Cisco DNA Center Information Disclosure Vulnerability
Published 2020-08-17 · Modified
7.5EPSS 0.022
CVE-2026-20191
Cisco Catalyst Center Arbitrary File Read Vulnerability
Published 2026-07-01 · Analyzed
7.5EPSS 0.006
CVE-2021-1134
Cisco DNA Center Certificate Validation Vulnerability
Published 2021-06-29 · Modified
7.4EPSS 0.008
CVE-2025-20210
Cisco Catalyst Center Unprotected API Endpoint
Published 2025-05-07 · Analyzed
7.3EPSS 0.004
CVE-2023-20059
Cisco DNA Center Information Disclosure Vulnerability
Published 2023-03-23 · Modified
6.5EPSS 0.004
CVE-2020-3466
Cisco DNA Center Cross-Site Scripting Vulnerabilities
Published 2020-08-26 · Modified
6.1EPSS 0.009
CVE-2025-20353
Cisco Catalyst Center Cross-Site Scripting Vulnerability
Published 2025-11-13 · Analyzed
6.1EPSS 0.002
CVE-2019-15253
Cisco Digital Network Architecture Center Stored Cross-Site Scripting Vulnerability
Published 2020-02-05 · Modified
5.41 PoCEPSS 0.031
CVE-2019-1707
Cisco DNA Center Access Contract Stored Cross-Site Scripting Vulnerability
Published 2019-03-11 · Modified
5.4EPSS 0.009
CVE-2023-20183
Cisco DNA Center Software API Vulnerabilities
Published 2023-05-18 · Modified
5.4EPSS 0.005
CVE-2023-20184
Cisco DNA Center Software API Vulnerabilities
Published 2023-05-18 · Modified
5.4EPSS 0.005
CVE-2021-1130
Cisco DNA Center Cross-Site Scripting Vulnerability
Published 2021-01-13 · Modified
4.8EPSS 0.008
CVE-2025-20223
A vulnerability in Cisco Catalyst Center, formerly Cisco DNA Center, could allow an authenticated, remote attacker to read and modify data in a repository that belongs to an internal service of an affected device. This vulnerability is due to insufficient enforcement of access control on HTTP requests. An attacker could exploit this vulnerability by submitting a crafted HTTP request to an affected device. A successful exploit could allow the attacker to read and modify data that is handled by an internal service on the affected device.
Published 2025-05-07 · Analyzed
4.7EPSS 0.003
CVE-2022-20630
Cisco DNA Center Information Disclosure Vulnerability
Published 2022-02-10 · Modified
4.4EPSS 0.002
CVE-2021-34782
Cisco DNA Center Information Disclosure Vulnerability
Published 2021-10-06 · Modified
4.3EPSS 0.008
CVE-2024-20333
A vulnerability in the web-based management interface of Cisco Catalyst Center, formerly Cisco DNA Center, could allow an authenticated, remote attacker to change specific data within the interface on an affected device. This vulnerability is due to insufficient authorization enforcement. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to change a specific field within the web-based management interface, even though they should not have access to change that field.
Published 2024-03-27 · Analyzed
4.3EPSS 0.004
CVE-2025-20346
Cisco Catalyst Center Privilege Escalation Vulnerability
Published 2025-11-13 · Analyzed
4.3EPSS 0.003