Cisco Nexus Dashboard and NDFC Unauthorized REST API Vulnerabilities Allowing Information Disclosure and File Modification

Vulnerability

A vulnerability exists in the REST API endpoints of Cisco Nexus Dashboard and Cisco Nexus Dashboard Fabric Controller (NDFC) due to inadequate authorization controls. This vulnerability allows authenticated, low-privileged, remote attackers to view sensitive information or upload and modify files on affected devices. Exploitation of this vulnerability could enable attackers to perform limited administrative functions, such as accessing confidential HTTP Proxy and NTP configuration details, uploading images, and damaging image files on the device.

Impact

Successful exploitation allows attackers to perform limited administrative tasks, including accessing sensitive configuration information and manipulating image files on the device.

Remediation

Users can upgrade to Cisco Nexus Dashboard releases 4.1(1g) or 3.1(1k) to address this vulnerability. For Cisco NDFC, migrate to an appropriate fixed Cisco Nexus Dashboard release. Consult the Cisco Nexus Dashboard and NDFC sections of the advisory for specific upgrade instructions.

Added: Aug 27, 2025, 5:31 PM
Updated: Aug 27, 2025, 5:31 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
5.0
exploitability
4.9
remediation
7.7
relevance
0.4
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.