Cisco Catalyst Center Unauthenticated API Access Vulnerability Allowing Proxy Configuration Modification

Vulnerability

A vulnerability exists in the management API of Cisco Catalyst Center (formerly Cisco DNA Center) that allows an unauthenticated, remote attacker to read and modify outgoing proxy configuration settings. This issue arises from a lack of authentication in an API endpoint, enabling attackers to disrupt or intercept internet traffic from Cisco Catalyst Center.

Impact

Exploitation of this vulnerability could lead to unauthorized modification of proxy settings, disrupting or intercepting outbound internet traffic from Cisco Catalyst Center.

Remediation

Cisco has released software updates to address this vulnerability. Customers with service contracts should obtain these updates through their usual channels. For those without service contracts, contact the Cisco Technical Assistance Center (TAC) for assistance.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
5.0
exploitability
7.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.