Description
A vulnerability in Cisco Catalyst Center could allow an unauthenticated, remote attacker to read arbitrary files from a restricted container. 

This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to read arbitrary files from a restricted container of the affected device.
Published: 2026-07-01
Score: 7.5 High
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

An unauthenticated attacker can send a crafted HTTP request to a Cisco Catalyst Center device, exploiting insufficient input validation to read an arbitrary file from a restricted container. This path‑traversal style weakness (CWE‑22) allows disclosure of confidential configuration or system data, resulting in a Remote File Read.

Affected Systems

All released versions of Cisco Catalyst Center are potentially vulnerable, as the advisory does not specify version ranges and identifies insufficient validation as the root cause.

Risk and Exploitability

The CVSS score of 7.5 indicates high severity, and the EPSS score of less than 1% suggests a low current probability of exploitation. The vulnerability is not listed in CISA's KEV catalog. An attacker would need unauthenticated network access to the device’s management interface, which is typical for remote HTTP traffic, to send the crafted request.

Generated by OpenCVE AI on July 21, 2026 at 13:49 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Limit external reachability to the Catalyst Center management interface by implementing firewall rules or network segmentation so only trusted internal networks can access it.
  • Enforce strict input validation and path‑traversal safeguards on the web interface to prevent the exploitation of this weakness until the official patch is applied.
  • Apply the vendor‑issued patch or update to a fixed version once it becomes available.

Generated by OpenCVE AI on July 21, 2026 at 13:49 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 01 Jul 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 01 Jul 2026 17:15:00 +0000

Type Values Removed Values Added
Description A vulnerability in Cisco Catalyst Center could allow an unauthenticated, remote attacker to read arbitrary files from a restricted container.&nbsp; This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by sending a crafted HTTP request to an affected device. A successful exploit could allow the attacker to read arbitrary files from a restricted container of the affected device.
Title Cisco Catalyst Center Arbitrary File Read Vulnerability
Weaknesses CWE-22
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2026-07-01T17:25:09.294Z

Reserved: 2025-10-08T11:59:15.395Z

Link: CVE-2026-20191

cve-icon Vulnrichment

Updated: 2026-07-01T17:21:08.775Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-07-21T14:00:05Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')