📦 Catalyst Center

by Cisco

🔍 What is Catalyst Center?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-1264

CRITICAL CVSS 9.6 Jan 20, 2021

This vulnerability allows authenticated remote attackers to execute arbitrary CLI commands on devices managed by Cisco DNA Center through command injection in the Command Runner tool. It affects organ...

CVE-2024-20350

HIGH CVSS 7.5 Sep 25, 2024

This vulnerability allows an unauthenticated remote attacker to impersonate a Cisco Catalyst Center appliance due to a static SSH host key. Attackers can perform man-in-the-middle attacks to intercept...

CVE-2021-1134

HIGH CVSS 7.4 Jun 29, 2021

This vulnerability allows unauthenticated remote attackers to intercept and modify sensitive network client data by exploiting improper X.509 certificate validation between Cisco DNA Center and Identi...

CVE-2025-20353

MEDIUM CVSS 6.1 Nov 13, 2025

An unauthenticated cross-site scripting (XSS) vulnerability in Cisco Catalyst Center's web management interface allows remote attackers to execute malicious scripts in users' browsers. This affects ad...

CVE-2025-20346

MEDIUM CVSS 4.3 Nov 13, 2025

This vulnerability in Cisco Catalyst Center allows authenticated users with read-only (Observer) privileges to perform administrative operations due to improper role-based access control (RBAC). Attac...

CVE-2025-20349

MEDIUM CVSS 6.3 Nov 13, 2025

This vulnerability allows authenticated attackers with at least Observer role credentials to execute arbitrary commands as root in a restricted container on Cisco Catalyst Center. The issue stems from...

CVE-2025-20223

MEDIUM CVSS 4.7 May 7, 2025

This vulnerability in Cisco Catalyst Center (formerly DNA Center) allows authenticated remote attackers to bypass access controls and read/modify data in internal service repositories. Attackers can e...