NCSC-2026-0218 [1.00] [M/H] Vulnerability fixed in Cisco Catalyst Center
Cisco has fixed a vulnerability in Cisco Catalyst Center. The vulnerability lies in the insufficient validation of user-supplied input, which can be manipulated via specially crafted HTTP requests to gain access to files within a restricted container. This allows unauthenticated attackers to read arbitrary files without authentication, potentially exposing sensitive information. The vulnerability is specifically exploited via HTTP request manipulation.
CSIRTS triage
- What
- A vulnerability allows unauthenticated attackers to read arbitrary files.
- Who is affected
- Users of Cisco Catalyst Center.
- Urgency
- The urgency is unknown, but the vulnerability could expose sensitive information.
- Action
- Apply the necessary updates as per the security advisories.
AI-assisted analysis generated from the source advisory — verify against the original.
⚡ Watch Catalyst Center
Get an email when a new Catalyst Center advisory drops — max one per day, one-click unsubscribe.
Details
Original advisory: https://advisories.ncsc.nl/advisory?id=NCSC-2026-0218
Exploitation outlook
EPSS (FIRST.org) estimates each CVE’s probability of exploitation in the next 30 days — here is the CSIRTS.com read on those numbers.
- Low exploitation riskCVE-2026-201910.91% 30-day exploitation probability — currently an unlikely target, but scores change as exploit code circulates. Riskier than 57% of all EPSS-scored CVEs.
Referenced CVEs
| CVE | CSIRTS overview | External |
|---|---|---|
| CVE-2026-20191 | coverage & exploitation status | NVD · CVE.org |
Same CVEs, other sources
How other CERTs, PSIRTs and databases cover the vulnerabilities in this advisory.
- highCisco Catalyst Center Arbitrary File Read Vulnerabilitycisco-psirt
- medium[UPDATE] [medium] Cisco Catalyst Center: Vulnerability Allows Information Disclosurecert-bund
- unknownMultiple vulnerabilities in Cisco products (July 2, 2026)cert-fr-avis
- highCVE-2026-20191: A vulnerability in Cisco Catalyst Center could allow an unauthenticated, remote attacker to re…nvd
- highCisco Advance Notification for Publication of July 1, 2026, Security Advisoriescisco-psirt
More from NCSC-NL Advisories
- unknownNCSC-2026-0303 [1.01] [M/H] Vulnerabilities patched in GitLab by GitLab Inc.2026-08-25
- unknownNCSC-2026-0326 [1.00] [M/H] Vulnerabilities patched in Keycloak2026-08-25
- unknownNCSC-2026-0325 [1.00] [M/H] Vulnerabilities patched in Atlassian products2026-08-24
- unknownNCSC-2026-0324 [1.00] [M/H] Vulnerability fixed in Zimbra Collaboration Suite2026-08-23
- unknownNCSC-2026-0323 [1.00] [M/H] Vulnerabilities fixed in Cisco Secure Workload2026-08-21